PT-2011-1733 · Ibm · Ibm Tivoli Directory Server
Published
2011-04-21
·
Updated
2011-04-21
·
CVE-2010-4785
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
IBM Tivoli Directory Server (TDS) versions 6.0 through 6.0.0.61
Description
The issue allows remote authenticated users to cause a denial of service via a malformed LDAP extended operation. This operation triggers certain comparisons involving the NULL operation OID in the do extendedOp function in ibmslapd.
Recommendations
For IBM Tivoli Directory Server (TDS) versions 6.0 through 6.0.0.61, update to version 6.0.0.62 (aka 6.0.0.8-TIV-ITDS-IF0004) to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Tivoli Directory Server