Red Hat Directory Server LDAP Query Patterns Buffer Overflow Vulnerability
BID:29126
Info
Red Hat Directory Server LDAP Query Patterns Buffer Overflow Vulnerability
| Bugtraq ID: | 29126 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-1677 |
| Remote: | Yes |
| Local: | No |
| Published: | May 09 2008 12:00AM |
| Updated: | May 12 2008 06:45PM |
| Credit: | Nathan Kinder |
| Vulnerable: |
Redhat Directory Server 7.1 SP5 Redhat Directory Server 7.1 SP4 Redhat Directory Server 7.1 SP3 Redhat Directory Server 7.1 SP2 Redhat Directory Server 7.1 SP1 Redhat Directory Server 7.1 |
| Not Vulnerable: |
Redhat Directory Server 7.1 SP6 |
Discussion
Red Hat Directory Server LDAP Query Patterns Buffer Overflow Vulnerability
Red Hat Directory Server is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data when processing LDAP queries.
Attackers could exploit this issues to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
Red Hat Directory Server is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data when processing LDAP queries.
Attackers could exploit this issues to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
Exploit / POC
Red Hat Directory Server LDAP Query Patterns Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Red Hat Directory Server LDAP Query Patterns Buffer Overflow Vulnerability
Solution:
The vendor has released an advisory and Service Pack 6. Please see the references for more information.
Solution:
The vendor has released an advisory and Service Pack 6. Please see the references for more information.
References
Red Hat Directory Server LDAP Query Patterns Buffer Overflow Vulnerability
References:
References:
- Bugzilla Bug 182621: Allow larger regex buffer to enable long substring filters (Red Hat)
- Bugzilla Bug 444712: CVE-2008-1677 Directory Server: insufficient buffer size f (Red Hat)
- Red Hat Directory Server Homepage (Red Hat)
- RHSA-2008:0268-3 Critical: Red Hat Directory Server 7.1 Service Pack 6 security (Red Hat)