Vulnerability Name:

CVE-2011-0019 (CCN-65639)

Assigned:2010-12-07
Published:2011-02-22
Updated:2011-03-31
Summary:slapd (aka ns-slapd) in 389 Directory Server 1.2.7.5 (aka Red Hat Directory Server 8.2.x or dirsrv) does not properly handle simple paged result searches, which allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via multiple search requests.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-20
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2011-0019

Source: CCN
Type: RHSA-2011-0293
Moderate: Red Hat Directory Server security update

Source: CCN
Type: SA43447
Red Hat Directory Server Denial of Service and Privilege Escalation Vulnerabilities

Source: CCN
Type: OSVDB ID: 72545
Red Hat Directory Server ns-slapd Multiple Search Paged Result Handling Remote DoS

Source: CCN
Type: OSVDB ID: 75072
389 Directory Server Normalisation Memory Leak Remote DoS

Source: CCN
Type: OSVDB ID: 75073
389 Directory Server Simple Paged Results Remote DoS

Source: CCN
Type: Red Hat Web site
Red Hat Directory Server

Source: REDHAT
Type: UNKNOWN
RHSA-2011:0293

Source: BID
Type: UNKNOWN
46489

Source: CCN
Type: BID-46489
Red Hat Directory Server Multiple Security Vulnerabilities

Source: SECTRACK
Type: UNKNOWN
1025102

Source: CONFIRM
Type: UNKNOWN
https://bugzilla.redhat.com/show_bug.cgi?id=666076

Source: CONFIRM
Type: UNKNOWN
https://bugzilla.redhat.com/show_bug.cgi?id=670914

Source: XF
Type: UNKNOWN
rhds-slapd-dos(65639)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:fedoraproject:389_directory_server:1.2.7.5:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/a:redhat:directory_server:8.2:*:*:*:*:*:*:*
  • OR cpe:/a:redhat:directory_server:8.2.3:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:redhat:directory_server:8.2:*:*:*:*:*:*:*
  • OR cpe:/a:fedoraproject:389_directory_server:1.2.7.5:*:*:*:*:*:*:*
  • OR cpe:/a:redhat:directory_server:8.2.3:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    fedoraproject 389 directory server 1.2.7.5
    redhat directory server 8.2
    redhat directory server 8.2.3
    redhat directory server 8.2
    fedoraproject 389 directory server 1.2.7.5
    redhat directory server 8.2.3