Denial of Service Vulnerability in 389-ds-base via LDAP Search Filters

Denial of Service Vulnerability in 389-ds-base via LDAP Search Filters

CVE-2018-1054 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:N/A:P

An out-of-bounds memory read flaw was found in the way 389-ds-base handled certain LDAP search filters, affecting all versions including 1.4.x. A remote, unauthenticated attacker could potentially use this flaw to make ns-slapd crash via a specially crafted LDAP request, thus resulting in denial of service.

Learn more about our Web Application Penetration Testing UK.