4

CVE-2010-4785

The do_extendedOp function in ibmslapd in IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.62 (aka 6.0.0.8-TIV-ITDS-IF0004) on Linux, Solaris, and Windows allows remote authenticated users to cause a denial of service (ABEND) via a malformed LDAP extended operation that triggers certain comparisons involving the NULL operation OID.

Data is provided by the National Vulnerability Database (NVD)
IbmTivoli Directory Server Version6.0
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.0
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.1
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.7
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.8
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.14
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.19
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.33
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.41
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.45
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.52
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.53
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.54
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.55
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.56
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.57
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.58
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.59
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.60
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
IbmTivoli Directory Server Version6.0.0.61
   LinuxLinux Kernel
   MicrosoftWindows
   SunSunos
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.36% 0.552
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:N/A:P