CVE-2001-1308: High severity Sun Iplanet Directory Server vulnerability
Published Jul 16, 2001
·Updated
Format string vulnerabilities in iPlanet Directory Server 4.1.4 and earlier (LDAP) allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.
Affected Software
1 affected component
Sun Iplanet Directory Server<=4.1.4
Remediation
Event History
Jul 16, 2001
CVE Published
04:00 AM
May 3, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1308?
CVE-2001-1308 has a high severity due to its potential for remote code execution and system crashes.
2
How do I fix CVE-2001-1308?
The recommended fix for CVE-2001-1308 is to upgrade to a version of iPlanet Directory Server that is later than 4.1.4.
3
What types of attacks are possible with CVE-2001-1308?
CVE-2001-1308 allows remote attackers to cause a denial of service or potentially execute arbitrary code.
4
Which versions of iPlanet Directory Server are affected by CVE-2001-1308?
CVE-2001-1308 affects iPlanet Directory Server version 4.1.4 and earlier.
5
Is CVE-2001-1308 exploitable over the network?
Yes, CVE-2001-1308 is exploitable remotely, making it a serious network vulnerability.