PT-2006-1628 · Stalker · Communigate Pro Server

Evgeny Legerov

·

Published

2006-02-06

·

Updated

2018-10-19

·

CVE-2006-0566

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions CommuniGate Pro Server versions prior to 5.0.8
Description The issue is caused by an error in the LDAP component during handling of LDAP requests containing a large number of elements in the DN (Distinguished Names) field. This can be exploited to crash the service via a specially-crafted LDAP request.
Recommendations For CommuniGate Pro Server versions prior to 5.0.8, update to version 5.0.8 or later to resolve the issue. As a temporary workaround, consider restricting the size of the DN field in LDAP requests to prevent the service from crashing.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-0566

Affected Products

Communigate Pro Server