CVE-2000-0336: Low severity openldap OpenLDAP vulnerability

Published Apr 21, 2000
·
Updated

Linux OpenLDAP server allows local users to modify arbitrary files via a symlink attack.

Affected Software

15 affected components
openldap OpenLDAP=1.2.7
openldap OpenLDAP=1.2.10
openldap OpenLDAP=1.2.8
openldap OpenLDAP=1.2.9
redhat Linux=6.1
redhat Linux=6.2
Mandrakesoft Mandrake Linux=7.0
redhat Linux=6.1
Turbolinux Turbolinux=4.4
Turbolinux Turbolinux=4.2
Turbolinux Turbolinux=6.0.2
redhat Linux=6.2
redhat Linux=6.1
redhat Linux=6.2
Mandrakesoft Mandrake Linux=6.1

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Remove

    Remove OpenLDAP (slapd) from your environment.

    If OpenLDAP is not required on a host, uninstall or disable the slapd service to eliminate the attack surface.

  2. Configuration

    Ensure all directories and files used by OpenLDAP (database, runtime, lock, PID and temporary directories) are owned by the ldap user/group and are not writable by unprivileged or world users; remove any world-writable permissions and replace any unsafe symlinks inside those directories with regular files or secure links.

    OpenLDAP (slapd) runtime/database directory permissions = owned by ldap user and not writable by other local users
  3. Compensating control

    Restrict local account access on hosts running OpenLDAP: disable or lock untrusted local user accounts, restrict interactive logins, and limit which users can write to the filesystem areas used by slapd (use ACLs, SELinux/AppArmor profiles or container/namespace isolation if available).

  4. Operational

    Scan OpenLDAP data and related system directories for suspicious or unexpected symlinks and for any files modified by local users; restore affected files from trusted backups and investigate for signs of compromise. Rotate any credentials, keys, or secrets that may have been exposed or modified as a result of the exploit.

Event History

Apr 21, 2000
CVE Published
04:00 AM
Data Sourced
via NVD·04:00 AM
RemedyDescriptionSeverityAffected Software
Jul 12, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2000-0336?

CVE-2000-0336 is considered a high severity vulnerability due to its potential to allow local users to modify arbitrary files.

2

How do I fix CVE-2000-0336?

To fix CVE-2000-0336, it is recommended to upgrade OpenLDAP to a version that is not affected by this vulnerability.

3

Which versions of OpenLDAP are affected by CVE-2000-0336?

CVE-2000-0336 affects OpenLDAP versions 1.2.7 to 1.2.10.

4

What type of attack does CVE-2000-0336 involve?

CVE-2000-0336 involves a symlink attack that allows local users to manipulate file access.

5

Is CVE-2000-0336 specific to any Linux distribution?

CVE-2000-0336 is known to affect multiple distributions, including Mandrake Linux and Red Hat Linux.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203