PT-2020-19925 · Openldap+1 · Openldap2+1

Johannes Segitz

·

Published

2020-07-06

·

Updated

2020-09-11

·

CVE-2020-8023

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions openldap2 versions prior to 2.4.26-0.74.13.1 openldap2 versions prior to 2.4.41-18.71.2 openldap2 versions prior to 2.4.46-9.31.1 openldap2 versions prior to 2.4.46-lp151.10.12.1 openldap2 versions prior to 2.4.46-lp152.14.3.1
Description The issue is related to the acceptance of extraneous untrusted data with trusted data in the start script of openldap2, allowing local attackers to escalate privileges from user ldap to root.
Recommendations For openldap2 versions prior to 2.4.26-0.74.13.1, update to version 2.4.26-0.74.13.1 or later. For openldap2 versions prior to 2.4.41-18.71.2, update to version 2.4.41-18.71.2 or later. For openldap2 versions prior to 2.4.46-9.31.1, update to version 2.4.46-9.31.1 or later. For openldap2 versions prior to 2.4.46-lp151.10.12.1, update to version 2.4.46-lp151.10.12.1 or later. For openldap2 versions prior to 2.4.46-lp152.14.3.1, update to version 2.4.46-lp152.14.3.1 or later.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-8023
OPENSUSE-SU-2020:0956-1
OPENSUSE-SU-2020:0976-1
OPENSUSE-SU-2020_0956-1
OPENSUSE-SU-2020_0976-1
SUSE-SU-2020:14419-1
SUSE-SU-2020:1855-1
SUSE-SU-2020:1856-1
SUSE-SU-2020:1859-1
SUSE-SU-2020_14419-1
SUSE-SU-2020_1855-1
SUSE-SU-2020_1856-1
SUSE-SU-2020_1859-1

Affected Products

Suse
Openldap2