CVE-2010-4785: Medium severity ibm tivoli directory server vulnerability
The doextendedOp function in ibmslapd in IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.62 (aka 6.0.0.8-TIV-ITDS-IF0004) on Linux, Solaris, and Windows allows remote authenticated users to cause a denial of service (ABEND) via a malformed LDAP extended operation that triggers certain comparisons involving the NULL operation OID.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4785?
CVE-2010-4785 has a severity rating that indicates it can cause a denial of service in IBM Tivoli Directory Server.
How do I fix CVE-2010-4785?
To fix CVE-2010-4785, upgrade IBM Tivoli Directory Server to version 6.0.0.62 or later.
Who is affected by CVE-2010-4785?
CVE-2010-4785 affects remote authenticated users of IBM Tivoli Directory Server versions prior to 6.0.0.62.
What systems are impacted by CVE-2010-4785?
CVE-2010-4785 impacts IBM Tivoli Directory Server running on Linux, Solaris, and Windows.
What does CVE-2010-4785 exploit?
CVE-2010-4785 exploits a vulnerability in the do_extendedOp function through a malformed LDAP extended operation.