CVE-2006-4175: High severity Sun Java System Directory Server vulnerability
The LDAP server (ns-slapd) in Sun Java System Directory Server 5.2 Patch4 and earlier and ONE Directory Server 5.1 and 5.2 allows remote attackers to cause a denial of service (crash) via malformed queries, probably malformed BER queries, which trigger a free of uninitialized memory locations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-4175?
CVE-2006-4175 is classified as a denial of service vulnerability affecting specific versions of Sun's LDAP server.
How do I fix CVE-2006-4175?
To fix CVE-2006-4175, upgrade to Sun Java System Directory Server version 5.2 Patch5 or later, or Sun ONE Directory Server version 5.1 and 5.2 to a fixed version.
Who is affected by CVE-2006-4175?
CVE-2006-4175 affects users of Sun Java System Directory Server 5.2 and ONE Directory Server versions 5.1 and 5.2.
What type of vulnerability is CVE-2006-4175?
CVE-2006-4175 is a remote denial of service vulnerability caused by malformed query inputs to the LDAP server.
What are the potential consequences of CVE-2006-4175?
The potential consequences of CVE-2006-4175 include the crashing of the LDAP server, rendering it unavailable to legitimate users.