CVE-2011-1786
Summary
| CVE | CVE-2011-1786 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2011-05-03 22:55:03 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | lsassd in Likewise Open /Enterprise 5.3 before build 7845, Open 6.0 before build 8325, and Enterprise 6.0 before build 178, as distributed in VMware ESXi 4.1 and ESX 4.1 and possibly other products, allows remote attackers to cause a denial of service (daemon crash) via an Active Directory login attempt that provides a username containing an invalid byte sequence. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
NoneAvailability
PartialAV:N/AC:L/Au:N/C:N/I:N/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Likewise | Likewise Open | 5.3 | All | enterprise | All |
| Application | Likewise | Likewise Open | 6.0 | All | All | All |
| Application | Likewise | Likewise Open | 6.0 | All | enterprise | All |
| Application | Vmware | Esx | 4.1 | All | All | All |
| Application | Vmware | Esxi | 4.1 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Likewise 'lsassd' Service Remote Denial of Service Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| VMSA-2011-0007 | af854a3a-2127-422b-91ae-364da2661108 | www.vmware.com | Vendor Advisory |
| CXSecurity - IDS | af854a3a-2127-422b-91ae-364da2661108 | securityreason.com | |
| VMware KB: VMware ESXi 4.1 Patch ESXi410-201104401-SG: Updates Firmware | af854a3a-2127-422b-91ae-364da2661108 | kb.vmware.com | |
| Likewise Forum | [LWSA-2011-001] Lsassd Remote DoS | af854a3a-2127-422b-91ae-364da2661108 | www.likewise.com | |
| Likewise Open / Enterprise lsassd Service Denial of Service Vulnerability - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| VMware ESXi and ESX Socket Consumption and Likewise Login Bug Let Remote Users Deny Service - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| [Security-announce] VMSA-2011-0007 VMware ESXi and ESX Denial of Service and third party updates for Likewise components and ESX Service Console | af854a3a-2127-422b-91ae-364da2661108 | lists.vmware.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.