CVE-2001-1306: High severity Sun Iplanet Directory Server vulnerability
iPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid BER length of length fields, as demonstrated by the PROTOS LDAPv3 test suite.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2001-1306?
CVE-2001-1306 is rated as a high severity vulnerability due to its ability to cause denial of service and potential remote code execution.
How do I fix CVE-2001-1306?
To fix CVE-2001-1306, upgrade to iPlanet Directory Server version 4.1.5 or later, which addresses this vulnerability.
What software is affected by CVE-2001-1306?
CVE-2001-1306 affects iPlanet Directory Server version 4.1.4 and earlier.
What type of attack does CVE-2001-1306 involve?
CVE-2001-1306 involves a denial of service attack that can crash the server and potentially lead to arbitrary code execution.
Can CVE-2001-1306 be exploited remotely?
Yes, CVE-2001-1306 can be exploited remotely by attackers sending malicious invalid BER length fields.