CVE-2015-1546: Double Free
Double free vulnerability in the getvrFilter function in servers/slapd/filter.c in OpenLDAP 2.4.40 allows remote attackers to cause a denial of service (crash) via a crafted search query with a matched values control.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1546?
CVE-2015-1546 has been categorized as a high-severity vulnerability due to its potential to cause a denial of service.
How do I mitigate CVE-2015-1546?
To mitigate CVE-2015-1546, upgrade to OpenLDAP version 2.4.57 or higher.
Which software versions are affected by CVE-2015-1546?
CVE-2015-1546 affects OpenLDAP version 2.4.40 and potentially earlier versions, along with specific versions of distributions like Debian and openSUSE.
What type of vulnerability is CVE-2015-1546?
CVE-2015-1546 is a double free vulnerability that can be exploited via crafted search queries.
Can CVE-2015-1546 be exploited remotely?
Yes, CVE-2015-1546 can be exploited by remote attackers, allowing them to potentially crash the server.