PT-2006-5316 · Novell · Libnmasldap.So+1

Published

2006-11-04

·

Updated

2017-07-20

·

CVE-2006-4521

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Novell eDirectory versions 8.8 through 8.8.1
Description The issue is related to the BerDecodeLoginDataRequest function in the libnmasldap.so NMAS module, which does not properly handle certain input. This can be exploited by remote attackers to cause a denial of service through a crafted login request, resulting in invalid memory access.
Recommendations For Novell eDirectory versions 8.8 through 8.8.1, apply the Security Services 2.0.3 patch to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-4521

Affected Products

Novell Edirectory
Libnmasldap.So