CVE-2017-17740
18.12.2017, 06:29
contrib/slapd-modules/nops/nops.c in OpenLDAP through 2.4.45, when both the nops module and the memberof overlay are enabled, attempts to free a buffer that was allocated on the stack, which allows remote attackers to cause a denial of service (slapd crash) via a member MODDN operation.Enginsight
| Vendor | Product | Version |
|---|---|---|
| openldap | openldap | 𝑥 ≤ 2.4.45 |
| opensuse | leap | 15.0 |
| opensuse | leap | 15.1 |
| oracle | blockchain_platform | 𝑥 < 21.1.2 |
| mcafee | policy_auditor | 𝑥 < 6.5.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References