PT-2009-1039 · Openldap+1 · Openldap+1

Published

2009-10-23

·

Updated

2020-10-14

·

CVE-2009-3767

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions openldap versions 2.1.30 through 2.2.13 openldap versions prior to 2.4.35 openldap-devel versions 2.2.13 openldap-clients versions 2.2.13 openldap-servers versions 2.2.13 openldap-servers-sql versions 2.2.13 compat-openldap versions 2.1.30
Description The issue is related to multiple vulnerabilities in the OpenLDAP package, which can lead to disruption of protected information availability. These vulnerabilities can be exploited remotely. The problem lies in the handling of a '0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, allowing man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
Recommendations For openldap versions 2.1.30 through 2.2.13, update to a version prior to 2.4.35 or later. For openldap-devel versions 2.2.13, update to a version prior to 2.4.35 or later. For openldap-clients versions 2.2.13, update to a version prior to 2.4.35 or later. For openldap-servers versions 2.2.13, update to a version prior to 2.4.35 or later. For openldap-servers-sql versions 2.2.13, update to a version prior to 2.4.35 or later. For compat-openldap versions 2.1.30, update to a version prior to 2.4.35 or later. As a temporary workaround, consider restricting access to the vulnerable OpenLDAP package until a patch is available.

Fix

Improper Certificate Validation

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-06080
BDU:2015-06122
BDU:2015-06123
BDU:2015-06124
BDU:2015-06125
BDU:2015-06126
BDU:2015-08561
BDU:2015-08562
BDU:2015-08563
BDU:2015-08564
BDU:2015-08565
BDU:2015-08566
BDU:2015-09683
CVE-2009-3767
DSA-1943-1
RHSA-2010:0198
RHSA-2010:0543
RHSA-2010_0198
RHSA-2010_0543

Affected Products

Openldap
Red Hat