Vulnerability Name: | CVE-2007-5794 (CCN-38505) | ||||||||||||||||||||||||||||||||
Assigned: | 2005-04-09 | ||||||||||||||||||||||||||||||||
Published: | 2005-04-09 | ||||||||||||||||||||||||||||||||
Updated: | 2018-10-15 | ||||||||||||||||||||||||||||||||
Summary: | Race condition in nss_ldap, when used in applications that are linked against the pthread library and fork after a call to nss_ldap, might send user data to the wrong process because of improper handling of the LDAP connection. Note: this issue was originally reported for Dovecot with the wrong mailboxes being returned, but other applications might also be affected. | ||||||||||||||||||||||||||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||||||||||||||||||||||||||
CVSS v2 Severity: | 4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N) 3.2 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)
3.2 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||||||||||
Vulnerability Type: | CWE-362 | ||||||||||||||||||||||||||||||||
Vulnerability Consequences: | Data Manipulation | ||||||||||||||||||||||||||||||||
References: | Source: CONFIRM Type: UNKNOWN http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=453868 Source: CONFIRM Type: UNKNOWN http://bugs.gentoo.org/show_bug.cgi?id=198390 Source: MITRE Type: CNA CVE-2007-5794 Source: SUSE Type: UNKNOWN SUSE-SR:2008:003 Source: CCN Type: RHSA-2008-0389 Low: nss_ldap security and bug fix update Source: CCN Type: RHSA-2008-0715 Low: nss_ldap security and bug fix update Source: CCN Type: SA27670 nss_ldap Race Condition Security Issue Source: SECUNIA Type: Vendor Advisory 27670 Source: SECUNIA Type: Vendor Advisory 27768 Source: SECUNIA Type: Vendor Advisory 27839 Source: SECUNIA Type: Vendor Advisory 28061 Source: SECUNIA Type: Vendor Advisory 28838 Source: SECUNIA Type: Vendor Advisory 29083 Source: SECUNIA Type: Vendor Advisory 30352 Source: SECUNIA Type: Vendor Advisory 31227 Source: CCN Type: SA31524 Avaya Products nss_ldap Race Condition Security Issue Source: SECUNIA Type: Vendor Advisory 31524 Source: GENTOO Type: UNKNOWN GLSA-200711-33 Source: CCN Type: SECTRACK ID: 1020088 nss_ldap May Disclose Information on the Wrong User Request Source: CONFIRM Type: UNKNOWN http://support.avaya.com/elmodocs2/security/ASA-2008-332.htm Source: CCN Type: ASA-2008-332 nss_ldap security update (RHSA-2008-0715) Source: CONFIRM Type: UNKNOWN http://wiki.rpath.com/wiki/Advisories:rPSA-2007-0255 Source: DEBIAN Type: UNKNOWN DSA-1430 Source: DEBIAN Type: DSA-1430 libnss-ldap -- denial of service Source: MLIST Type: UNKNOWN [Dovecot] 20050409 Authentication and the wrong mailbox? Source: MLIST Type: UNKNOWN [Dovecot] 20050303 hanging imap... and users getting other users' emails! Source: CCN Type: GLSA-200711-33 nss_ldap: Information disclosure Source: MANDRIVA Type: UNKNOWN MDVSA-2008:049 Source: CCN Type: PADL Software Pty Ltd Web site nss_ldap Source: REDHAT Type: UNKNOWN RHSA-2008:0389 Source: REDHAT Type: UNKNOWN RHSA-2008:0715 Source: BUGTRAQ Type: UNKNOWN 20080212 FLEA-2008-0003-1 nss_ldap Source: BID Type: Patch 26452 Source: CCN Type: BID-26452 PADL 'nss_ldap' Race Condition Security Vulnerability Source: SECTRACK Type: UNKNOWN 1020088 Source: CONFIRM Type: UNKNOWN https://bugzilla.redhat.com/show_bug.cgi?id=154314 Source: CCN Type: Red Hat Bugzilla Bug 367461 CVE-2007-5794 nss_ldap randomly replying with wrong user's data Source: CONFIRM Type: UNKNOWN https://bugzilla.redhat.com/show_bug.cgi?id=367461 Source: XF Type: UNKNOWN nssldap-ldap-race-condition(38505) Source: XF Type: UNKNOWN nssldap-ldap-race-condition(38505) Source: CONFIRM Type: UNKNOWN https://issues.rpath.com/browse/RPL-1913 Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:10625 Source: SUSE Type: SUSE-SR:2008:003 SUSE Security Summary Report | ||||||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration RedHat 4: Configuration RedHat 5: Configuration RedHat 6: Configuration RedHat 7: Configuration RedHat 8: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||
BACK |