9.8

CVE-2010-0211

Exploit

The slap_modrdn2mods function in modrdn.c in OpenLDAP 2.4.22 does not check the return value of a call to the smr_normalize function, which allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a modrdn call with an RDN string containing invalid UTF-8 sequences, which triggers a free of an invalid, uninitialized pointer in the slap_mods_free function, as demonstrated using the Codenomicon LDAPv3 test suite.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
OpenldapOpenldap Version2.4.22
VMwareESXi Version4.0
VMwareESXi Version4.1
OpensuseOpensuse Version11.0
ApplemacOS X Version >= 10.6.0 < 10.6.5
ApplemacOS X Server Version >= 10.6.0 < 10.6.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 42.37% 0.974
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-252 Unchecked Return Value

The product does not check the return value from a method or function, which can prevent it from detecting unexpected states and conditions.

http://secunia.com/advisories/40677
Vendor Advisory
Broken Link
http://secunia.com/advisories/40639
Vendor Advisory
Broken Link
http://secunia.com/advisories/40687
Vendor Advisory
Broken Link
http://www.securityfocus.com/archive/1/515545/100/0/threaded
Third Party Advisory
Broken Link
VDB Entry
http://www.securityfocus.com/bid/41770
Patch
Third Party Advisory
Exploit
Broken Link
VDB Entry
http://www.securitytracker.com/id?1024221
Third Party Advisory
Broken Link
VDB Entry