CVE-2002-1379: High severity openldap openldap vulnerability
Published Dec 17, 2002
·Updated
OpenLDAP2 (OpenLDAP 2) 2.2.0 and earlier allows remote or local attackers to execute arbitrary code when libldap reads the .ldaprc file within applications that are running with extra privileges.
Affected Software
1 affected component
openldap OpenLDAP<=2.2.0
Remediation
Patch Available
Event History
Dec 17, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1379?
CVE-2002-1379 has a high severity rating due to its potential to allow remote or local code execution.
2
How do I fix CVE-2002-1379?
To fix CVE-2002-1379, upgrade to OpenLDAP version 2.2.1 or later.
3
What software versions are affected by CVE-2002-1379?
CVE-2002-1379 affects OpenLDAP 2.2.0 and earlier versions.
4
What type of attack does CVE-2002-1379 enable?
CVE-2002-1379 enables attackers to execute arbitrary code through a compromised .ldaprc file.
5
Can CVE-2002-1379 be exploited locally?
Yes, CVE-2002-1379 can be exploited both remotely and locally, allowing attackers to gain extra privileges.