CVE-2012-1164
Publication date 29 June 2012
Last updated 24 July 2024
Ubuntu priority
slapd in OpenLDAP before 2.4.30 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an LDAP search query with attrsOnly set to true, which causes empty attributes to be returned.
Status
Package | Ubuntu Release | Status |
---|---|---|
openldap | ||
14.04 LTS trusty |
Not affected
|
|
Notes
jdstrand
Per Debian bug report, you have to be using slapo-translucent and slapo-rwm, so downgrading to 'low'
Patch details
References
Related Ubuntu Security Notices (USN)
- USN-2622-1
- OpenLDAP vulnerabilities
- 26 May 2015