CVE-2010-4787: Medium severity IBM Tivoli Directory Server vulnerability
IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.63 (aka 6.0.0.8-TIV-ITDS-IF0005) allows remote authenticated users to cause a denial of service (daemon hang) via a paged search that triggers improper mutex processing.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4787?
CVE-2010-4787 is classified as a denial of service vulnerability affecting IBM Tivoli Directory Server.
How do I fix CVE-2010-4787?
To fix CVE-2010-4787, upgrade your IBM Tivoli Directory Server to version 6.0.0.63 or later.
What versions of IBM Tivoli Directory Server are affected by CVE-2010-4787?
CVE-2010-4787 affects IBM Tivoli Directory Server versions prior to 6.0.0.63, including multiple versions up to 6.0.0.62.
What type of attack does CVE-2010-4787 enable?
CVE-2010-4787 allows remote authenticated users to perform paged searches that can cause the daemon to hang, creating a denial of service.
Who is at risk from CVE-2010-4787?
Organizations using unpatched versions of IBM Tivoli Directory Server are at risk from CVE-2010-4787.