Description
The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows remote attackers to execute arbitrary code via a request that uses hexadecimal encoding, whose associated memory is not released, related to a "DN AttributeValue," aka "Active Directory Invalid Free Vulnerability." NOTE: this issue is probably a memory leak.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2024-08-07T05:04:47.970Z
Reserved: 2009-03-25T00:00:00.000Z
Link: CVE-2009-1138
No data.
Status : Modified
Published: 2009-06-10T18:00:00.377
Modified: 2026-04-23T00:35:47.467
Link: CVE-2009-1138
No data.
OpenCVE Enrichment
No data.
Weaknesses