ZeroHour

CVE-2017-9287

PoC
CVSS 3.1
6.5 medium
EPSS
7%p94
Published
()
Modified
Description

servers/slapd/back-mdb/search.c in OpenLDAP through 2.4.44 is prone to a double free vulnerability. A user with access to search the directory can crash slapd by issuing a search including the Paged Results control with a page size of 0.

Vendors
openldapdebianredhatmcafeeoracle
Products
openldap, debian linux, enterprise linux desktop, enterprise linux eus, enterprise linux server, enterprise linux server aus, enterprise linux server tus, enterprise linux workstation, policy auditor, blockchain platform
Weakness
CWE-415
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.