nss_ldap 181 to versions before 213, as used in Mandrake Corporate Server and Mandrake 10.0, and other operating systems, does not properly handle a SIGPIPE signal when sending a search request to an LDAP directory server, which might allow remote attackers to cause a denial of service (crond and other application crash) if they can cause an LDAP server to become unavailable. NOTE: it is not clear whether this attack scenario is sufficient to include this item in CVE.
Advisories
Source ID Title
EUVD EUVD EUVD-2005-2378 nss_ldap 181 to versions before 213, as used in Mandrake Corporate Server and Mandrake 10.0, and other operating systems, does not properly handle a SIGPIPE signal when sending a search request to an LDAP directory server, which might allow remote attackers to cause a denial of service (crond and other application crash) if they can cause an LDAP server to become unavailable. NOTE: it is not clear whether this attack scenario is sufficient to include this item in CVE.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T22:22:49.058Z

Reserved: 2005-07-26T00:00:00

Link: CVE-2005-2377

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2005-07-26T04:00:00.000

Modified: 2025-04-03T01:03:51.193

Link: CVE-2005-2377

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.