Multiple memory leaks in the LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (memory consumption) via invalid BER packets that trigger an error, which might prevent memory from being freed if it was allocated during the ber_scanf call, as demonstrated using the ProtoVer LDAP test suite.
Link | Tags |
---|---|
http://secunia.com/advisories/18960 | third party advisory |
http://www.securityfocus.com/bid/16677 | vdb entry |
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=179135 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24794 | vdb entry |