CVE-2007-5707: Double Free
OpenLDAP before 2.3.39 allows remote attackers to cause a denial of service (slapd crash) via an LDAP request with a malformed objectClasses attribute. NOTE: this has been reported as a double free, but the reports are inconsistent.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5707?
CVE-2007-5707 has a severity rating associated with a denial of service vulnerability, allowing remote attackers to crash the LDAP server.
How do I fix CVE-2007-5707?
To fix CVE-2007-5707, upgrade OpenLDAP to version 2.3.39 or later, which addresses the vulnerability.
What versions are affected by CVE-2007-5707?
CVE-2007-5707 affects all OpenLDAP versions prior to 2.3.39, including versions 1.0 to 2.3.28.
What type of vulnerability is CVE-2007-5707?
CVE-2007-5707 is classified as a denial of service vulnerability due to a malformed LDAP request.
Can CVE-2007-5707 be exploited remotely?
Yes, CVE-2007-5707 can be exploited remotely, allowing attackers to crash the OpenLDAP server.