IBM Tivoli Directory Server Multiple Security Vulnerabilities
BID:53043
Info
IBM Tivoli Directory Server Multiple Security Vulnerabilities
| Bugtraq ID: | 53043 |
| Class: | Unknown |
| CVE: |
CVE-2012-0726 CVE-2012-0743 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 16 2012 12:00AM |
| Updated: | Apr 16 2012 12:00AM |
| Credit: | The vendor reported these issues. |
| Vulnerable: |
IBM Tivoli Directory Server 6.1 .9 IBM Tivoli Directory Server 6.1 .8 IBM Tivoli Directory Server 6.1 .7 IBM Tivoli Directory Server 6.1 .6 IBM Tivoli Directory Server 6.1 .5 IBM Tivoli Directory Server 6.1 .4 IBM Tivoli Directory Server 6.1 .3 IBM Tivoli Directory Server 6.1 .2 IBM Tivoli Directory Server 6.1 .15 IBM Tivoli Directory Server 6.1 .14 IBM Tivoli Directory Server 6.1 .13 IBM Tivoli Directory Server 6.1 .12 IBM Tivoli Directory Server 6.1 .11 IBM Tivoli Directory Server 6.1 .10 IBM Tivoli Directory Server 6.1 .1 IBM Tivoli Directory Server 6.1 .0 IBM Tivoli Directory Server 6.3.0.0-TIV-ITDS-IF0 IBM Tivoli Directory Server 6.3 IBM Tivoli Directory Server 6.2.0.3-TIV-ITDS-IF0 IBM Tivoli Directory Server 6.2.0.3-TIV-ITDS-IF0 IBM Tivoli Directory Server 6.2 IBM Tivoli Directory Server 6.1 |
| Not Vulnerable: |
IBM Tivoli Directory Server 6.3 11 IBM Tivoli Directory Server 6.2 22 IBM Tivoli Directory Server 6.1 47 |
Discussion
IBM Tivoli Directory Server Multiple Security Vulnerabilities
IBM Tivoli Directory Server is prone to denial-of-service and information-disclosure vulnerabilities.
Attackers can exploit these issues to crash the application, denying service to legitimate users, or disclose sensitive information.
IBM Tivoli Directory Server versions prior to 6.1.0.47, 6.2.0.22, and 6.3.0.11 are affected.
IBM Tivoli Directory Server is prone to denial-of-service and information-disclosure vulnerabilities.
Attackers can exploit these issues to crash the application, denying service to legitimate users, or disclose sensitive information.
IBM Tivoli Directory Server versions prior to 6.1.0.47, 6.2.0.22, and 6.3.0.11 are affected.
Exploit / POC
IBM Tivoli Directory Server Multiple Security Vulnerabilities
An attacker can use readily available tools to exploit the information-disclosure vulnerability.
Currently we are not aware of any publicly available exploits for the denial-of-service issue. If you feel we are in error or are aware of any recent information, please mail us at: [email protected].
An attacker can use readily available tools to exploit the information-disclosure vulnerability.
Currently we are not aware of any publicly available exploits for the denial-of-service issue. If you feel we are in error or are aware of any recent information, please mail us at: [email protected].
Solution / Fix
IBM Tivoli Directory Server Multiple Security Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
IBM Tivoli Directory Server Multiple Security Vulnerabilities
References:
References: