Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) the authentication / bind phase and (2) anonymous LDAP search requests.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Directory_server | Fedora | 1.1.1 (including) | 1.1.1 (including) |
Directory_server | Redhat | 7.1-sp1 (including) | 7.1-sp1 (including) |
Directory_server | Redhat | 7.1-sp2 (including) | 7.1-sp2 (including) |
Directory_server | Redhat | 7.1-sp3 (including) | 7.1-sp3 (including) |
Directory_server | Redhat | 7.1-sp4 (including) | 7.1-sp4 (including) |
Directory_server | Redhat | 7.1-sp5 (including) | 7.1-sp5 (including) |
Directory_server | Redhat | 7.1-sp6 (including) | 7.1-sp6 (including) |
Directory_server | Redhat | 8.0 (including) | 8.0 (including) |
Red Hat Directory Server 7.1 for RHEL 3 | RedHat | redhat-ds-0:7.1SP7-14.RHEL3 | * |
Red Hat Directory Server 7.1 for RHEL 4 | RedHat | redhat-ds-0:7.1SP7-14.RHEL4 | * |
Red Hat Directory Server 8 for RHEL 5 | RedHat | redhat-ds-admin-0:8.0.4-3.el5dsrv | * |
Red Hat Directory Server 8 for RHEL 5 | RedHat | redhat-ds-base-0:8.0.4-7.el5dsrv | * |