First published: Thu Jul 03 2008(Updated: )
A flaw was found in a Accept Language HTTP header parsers implemented in adminutil library used by various Red Hat Directory Server's Administration Server's CGI scripts. A remote attacker able to connect to Administration Server web interface could cause a CGI scripts to crash, or possibly execute an arbitrary code. Issue affects: - Red Hat Directory Server 7.1 - adminutil packages shipped in Red Hat Directory Server 8 and Fedora Directory Server, prior to adminutil version 1.1.7
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Directory Server | =7.1-sp4 | |
Redhat Directory Server | =7.1-sp6 | |
Redhat Directory Server | =7.1-sp2 | |
Redhat Directory Server | =7.1-sp1 | |
Redhat Directory Server | =7.1-sp5 | |
Redhat Directory Server | =7.1-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.