LWN.net Logo

389-ds-base: denial of service

Package(s):389-ds-base CVE #(s):CVE-2013-0312
Created:March 12, 2013 Updated:March 13, 2013
Description: From the Red Hat advisory:

A flaw was found in the way LDAPv3 control data was handled by 389 Directory Server. If a malicious user were able to bind to the directory (even anonymously) and send an LDAP request containing crafted LDAPv3 control data, they could cause the server to crash, denying service to the directory.

Alerts:
Red Hat RHSA-2013:0628-01 2013-03-11
CentOS CESA-2013:0628 2013-03-12
Oracle ELSA-2013-0628 2013-03-11
Scientific Linux SL-389--20130312 2013-03-12

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds