CVE Vulnerabilities

CVE-2008-3283

Published: Aug 29, 2008 | Modified: Sep 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu

Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) the authentication / bind phase and (2) anonymous LDAP search requests.

Affected Software

Name Vendor Start Version End Version
Directory_server Fedora 1.1.1 (including) 1.1.1 (including)
Directory_server Redhat 7.1-sp1 (including) 7.1-sp1 (including)
Directory_server Redhat 7.1-sp2 (including) 7.1-sp2 (including)
Directory_server Redhat 7.1-sp3 (including) 7.1-sp3 (including)
Directory_server Redhat 7.1-sp4 (including) 7.1-sp4 (including)
Directory_server Redhat 7.1-sp5 (including) 7.1-sp5 (including)
Directory_server Redhat 7.1-sp6 (including) 7.1-sp6 (including)
Directory_server Redhat 8.0 (including) 8.0 (including)
Red Hat Directory Server 7.1 for RHEL 3 RedHat redhat-ds-0:7.1SP7-14.RHEL3 *
Red Hat Directory Server 7.1 for RHEL 4 RedHat redhat-ds-0:7.1SP7-14.RHEL4 *
Red Hat Directory Server 8 for RHEL 5 RedHat redhat-ds-admin-0:8.0.4-3.el5dsrv *
Red Hat Directory Server 8 for RHEL 5 RedHat redhat-ds-base-0:8.0.4-7.el5dsrv *

References