dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via a ModDN operation with a DN that contains a large number of "," (comma) characters, which results in a large amount of recursion, as demonstrated using the ProtoVer LDAP test suite.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/24796 | vdb entry |
http://secunia.com/advisories/18960 | third party advisory |
http://www.securityfocus.com/bid/16677 | vdb entry |
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=179137 |