CVE-2010-4786: Medium severity ibm tivoli directory server vulnerability
IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.63 (aka 6.0.0.8-TIV-ITDS-IF0005) allows remote authenticated users to cause a denial of service (daemon crash or hang) via a paged search, as demonstrated by a certain idsldapsearch command, related to an improper ibm-slapdIdleTimeOut configuration setting.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4786?
CVE-2010-4786 has a severity rating that may vary depending on the specific environment but can potentially lead to a denial of service.
How do I fix CVE-2010-4786?
To fix CVE-2010-4786, it is recommended to upgrade to IBM Tivoli Directory Server version 6.0.0.63 or later.
What versions of IBM Tivoli Directory Server are affected by CVE-2010-4786?
The affected versions include IBM Tivoli Directory Server 6.0 through 6.0.0.62.
What vulnerability does CVE-2010-4786 exploit?
CVE-2010-4786 exploits an improper configuration related to the ibm-slapdIdleTimeOut, allowing remote authenticated users to cause service interruptions.
Who is impacted by CVE-2010-4786?
Organizations using affected versions of IBM Tivoli Directory Server may be impacted by this denial of service vulnerability.