7.8

CVE-2009-1139

Memory leak in the LDAP service in Active Directory on Microsoft Windows 2000 SP4 and Server 2003 SP2, and Active Directory Application Mode (ADAM) on Windows XP SP2 and SP3 and Server 2003 SP2, allows remote attackers to cause a denial of service (memory consumption and service outage) via (1) LDAP or (2) LDAPS requests with unspecified OID filters, aka "Active Directory Memory Leak Vulnerability."

Data is provided by the National Vulnerability Database (NVD)
MicrosoftAdam
   MicrosoftWindows Xp Editionprofessional_x64
   MicrosoftWindows Xp Updatesp2 Editionprofessional
   MicrosoftWindows Xp Updatesp2 Editionprofessional_x64
   MicrosoftWindows Xp Version- Updatesp3 Editionprofessional
MicrosoftWindows Server 2003
   MicrosoftWindows Xp Editionprofessional_x64
   MicrosoftWindows Xp Updatesp2 Editionprofessional
   MicrosoftWindows Xp Updatesp2 Editionprofessional_x64
   MicrosoftWindows Xp Version- Updatesp3 Editionprofessional
MicrosoftWindows Server 2003 Updatesp1
   MicrosoftWindows Xp Editionprofessional_x64
   MicrosoftWindows Xp Updatesp2 Editionprofessional
   MicrosoftWindows Xp Updatesp2 Editionprofessional_x64
   MicrosoftWindows Xp Version- Updatesp3 Editionprofessional
MicrosoftWindows Server 2003 Updatesp2
   MicrosoftWindows Xp Editionprofessional_x64
   MicrosoftWindows Xp Updatesp2 Editionprofessional
   MicrosoftWindows Xp Updatesp2 Editionprofessional_x64
   MicrosoftWindows Xp Version- Updatesp3 Editionprofessional
MicrosoftWindows 2000 Updatesp4
MicrosoftWindows Server 2003 Updatesp1 Editionitanium
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 61.23% 0.983
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C