vulnerability

Amazon Linux AMI: Security patch for 389-ds-base (ALAS-2016-664) (CVE-2016-0741)

Severity
4
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
Mar 11, 2016
Added
Mar 11, 2016
Modified
Oct 30, 2017

Description

An infinite-loop vulnerability was discovered in the 389 directory server, where the server failed to correctly handle unexpectedly closed client connections. A remote attacker able to connect to the server could use this flaw to make the directory server consume an excessive amount of CPU and stop accepting connections (denial of service).

Solutions

amazon-linux-upgrade-389-ds-baseamazon-linux-upgrade-389-ds-base-debuginfoamazon-linux-upgrade-389-ds-base-develamazon-linux-upgrade-389-ds-base-libs
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.