Oval Definition:oval:com.ubuntu.cosmic:def:201725910000000
Revision Date:2018-04-30Version:1
Title:CVE-2017-2591 on Ubuntu 18.10 (cosmic) - medium.
Description:389-ds-base before version 1.3.6 is vulnerable to an improperly NULL terminated array in the uniqueness_entry_to_config() function in the "attribute uniqueness" plugin of 389 Directory Server. An authenticated, or possibly unauthenticated, attacker could use this flaw to force an out-of-bound heap memory read, possibly triggering a crash of the LDAP service.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-2591
Platform(s):Ubuntu 18.10
Product(s):
Definition Synopsis
  • Ubuntu 18.10 (cosmic) is installed.
  • AND 389-ds-base package in cosmic, is related to the CVE in some way and has been fixed (note: '1.4.0.18-1').
  • BACK