First published: Sun Apr 22 2012(Updated: )
IBM Tivoli Directory Server (TDS) 6.3 and earlier allows remote attackers to cause a denial of service (daemon crash) via a malformed LDAP paged search request.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Directory Server | <=6.3.0 | |
IBM Tivoli Directory Server | =3.2.2 | |
IBM Tivoli Directory Server | =4.1 | |
IBM Tivoli Directory Server | =5.2.0 | |
IBM Tivoli Directory Server | =6.0 | |
IBM Tivoli Directory Server | =6.0.0 | |
IBM Tivoli Directory Server | =6.0.0.7 | |
IBM Tivoli Directory Server | =6.0.0.8 | |
IBM Tivoli Directory Server | =6.0.0.69 | |
IBM Tivoli Directory Server | =6.1.0 | |
IBM Tivoli Directory Server | =6.1.0.45 | |
IBM Tivoli Directory Server | =6.1.0.46 | |
IBM Tivoli Directory Server | =6.1.0.47 | |
IBM Tivoli Directory Server | =6.1.0.48 | |
IBM Tivoli Directory Server | =6.2.0 | |
IBM Tivoli Directory Server | =6.2.0.19 | |
IBM Tivoli Directory Server | =6.2.0.20 | |
IBM Tivoli Directory Server | =6.2.0.21 | |
IBM Tivoli Directory Server | =6.2.0.22 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0743 is classified as a high severity vulnerability due to its potential to cause a denial of service.
To remediate CVE-2012-0743, upgrade to IBM Tivoli Directory Server version 6.4 or later.
CVE-2012-0743 affects IBM Tivoli Directory Server versions 6.3 and earlier, including versions 3.2.2 to 6.2.22.
CVE-2012-0743 allows remote attackers to execute a denial of service attack by sending a malformed LDAP paged search request.
If your system is vulnerable to CVE-2012-0743, immediately apply the recommended updates and monitor your systems for unusual activity.