Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a denial of service (CPU consumption and search outage) via crafted LDAP search requests with patterns, related to a single-threaded regular-expression subsystem.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Hpux | — | Update NetscapeDirSvr7.NDS-SLAPD to the latest versionUpdate NetscapeDirSvr6.NDS-PERLDAP to the latest versionUpdate NetscapeDirSvr7.NDS-BASE to the latest versionUpdate NetscapeDirSvr7.NDS-BSCLNT to the latest versionUpdate NetscapeDirSvr6.NDS-BASE to the latest versionUpdate NetscapeDirSvr6.NDS-SVCORE to the latest versionUpdate NetscapeDirSvr6.NDS-BSJRE to the latest versionUpdate NetscapeDirSvr6.NDS-NSPERL to the latest versionUpdate NetscapeDirSvr6.NDS-SLCLNT to the latest versionUpdate NetscapeDirSvr6.NDS-BSCLNT to the latest versionUpdate NetscapeDirSvr7.NDS-ADM to the latest versionUpdate NetscapeDirSvr6.NDS-ADM to the latest versionUpdate NetscapeDirSvr7.NDS-PERLDAP to the latest versionUpdate NetscapeDirSvr7.NDS-SVCORE to the latest versionUpdate NetscapeDirSvr7.NDS-SLCLNT to the latest versionUpdate NetscapeDirSvr6.NDS-NC to the latest versionUpdate NetscapeDirSvr7.NDS-RUN to the latest versionUpdate NetscapeDirSvr7.NDS-NC to the latest versionUpdate NetscapeDirSvr7.NDS-BSJRE to the latest versionUpdate NetscapeDirSvr6.NDS-SLAPD to the latest versionUpdate NetscapeDirSvr7.NDS-NSPERL to the latest version | Aug 11, 2017 | Aug 29, 2008 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub