The LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (crash) via a certain "bad BER sequence" that results in a free of uninitialized memory, as demonstrated using the ProtoVer LDAP test suite.
Link | Tags |
---|---|
http://secunia.com/advisories/18960 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24795 | vdb entry |
http://www.securityfocus.com/bid/16677 | vdb entry |
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=179135 |