PT-2024-1716 · Unknown+8 · 389-Ds-Base+8

Rohit Keshri

·

Published

2024-01-31

·

Updated

2024-10-10

·

CVE-2024-1062

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions 389-ds-base (affected versions not specified)
Description The issue is related to a heap overflow flaw in the 389-ds-base component, specifically in the log entry attr function. This flaw can lead to a denial of service when a value larger than 256 characters is written to log entry attr.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

ALSA-2024:3047
BDU:2024-01420
CESA-2024_3047
CVE-2024-1062
INFSA-2024_3047
OESA-2024-1148
OPENSUSE-SU-2024_1906-1
OPENSUSE-SU-2024_3218-1
RHSA-2024:1074
RHSA-2024:1372
RHSA-2024:3047
RHSA-2024:4209
RHSA-2024:4633
RHSA-2024:5690
RHSA-2024:7458
RHSA-2024_3047
RHSA-2025:1632
RLSA-2024:3047
SUSE-SU-2024:0908-1
SUSE-SU-2024:1906-1
SUSE-SU-2024:3218-1
SUSE-SU-2024_0908-1
SUSE-SU-2024_1906-1
SUSE-SU-2024_3218-1

Affected Products

389-Ds-Base
Almalinux
Astra Linux
Centos
Debian
Red Hat
Red Os
Rocky Linux
Suse