Description
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1541-1 | New openldap2.3 packages fix denial of service |
EUVD |
EUVD-2007-5680 | slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated. |
Ubuntu USN |
USN-551-1 | OpenLDAP vulnerabilities |
References
History
Wed, 28 May 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Thu, 22 May 2025 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T15:39:13.616Z
Reserved: 2007-10-30T00:00:00.000Z
Link: CVE-2007-5708
No data.
Status : Deferred
Published: 2007-10-30T19:46:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2007-5708
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN