First published: Tue Apr 28 2020(Updated: )
In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).
Credit: CVE-2020-12243 cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ubuntu/openldap | <2.4.45+dfsg-1ubuntu1.5 | 2.4.45+dfsg-1ubuntu1.5 |
ubuntu/openldap | <2.4.48+dfsg-1ubuntu1.1 | 2.4.48+dfsg-1ubuntu1.1 |
ubuntu/openldap | <2.4.49+dfsg-2ubuntu1.2 | 2.4.49+dfsg-2ubuntu1.2 |
ubuntu/openldap | <2.4.31-1+ | 2.4.31-1+ |
ubuntu/openldap | <2.4.50 | 2.4.50 |
ubuntu/openldap | <2.4.42+dfsg-2ubuntu3.8 | 2.4.42+dfsg-2ubuntu3.8 |
debian/openldap | 2.4.57+dfsg-3+deb11u1 2.5.13+dfsg-5 2.5.18+dfsg-2 2.5.18+dfsg-3 | |
macOS Catalina | <10.15.6 | 10.15.6 |
macOS Mojave | ||
macOS High Sierra | ||
OpenLDAP | <2.4.50 | |
Debian | =8.0 | |
Debian | =9.0 | |
Debian | =10.0 | |
openSUSE | =15.1 | |
Ubuntu | =12.04 | |
Ubuntu | =14.04 | |
Ubuntu | =16.04 | |
Ubuntu | =18.04 | |
Ubuntu | =19.10 | |
Ubuntu | =20.04 | |
netapp cloud backup | ||
NetApp SteelStore | ||
All of | ||
netapp h410c firmware | ||
netapp h410c | ||
All of | ||
netapp h300s firmware | ||
netapp h300s | ||
All of | ||
NetApp H500S Firmware | ||
netapp h500s | ||
All of | ||
netapp h700s firmware | ||
netapp h700s | ||
All of | ||
netapp h300e firmware | ||
netapp h300e | ||
All of | ||
netapp h500e firmware | ||
netapp h500e | ||
All of | ||
netapp h700e firmware | ||
netapp h700e | ||
All of | ||
netapp h410s firmware | ||
netapp h410s | ||
Brocade Fabric OS | ||
Apple iOS and macOS | >=10.13.0<10.13.6 | |
Apple iOS and macOS | >=10.14.0<10.14.6 | |
Apple iOS and macOS | >=10.15<10.15.6 | |
Apple iOS and macOS | =10.13.6-security_update_2018-002 | |
Apple iOS and macOS | =10.13.6-security_update_2018-003 | |
Apple iOS and macOS | =10.13.6-security_update_2019-001 | |
Apple iOS and macOS | =10.13.6-security_update_2019-002 | |
Apple iOS and macOS | =10.13.6-security_update_2019-003 | |
Apple iOS and macOS | =10.13.6-security_update_2019-004 | |
Apple iOS and macOS | =10.13.6-security_update_2019-005 | |
Apple iOS and macOS | =10.13.6-security_update_2019-006 | |
Apple iOS and macOS | =10.13.6-security_update_2019-007 | |
Apple iOS and macOS | =10.13.6-security_update_2020-001 | |
Apple iOS and macOS | =10.13.6-security_update_2020-002 | |
Apple iOS and macOS | =10.13.6-security_update_2020-003 | |
Apple iOS and macOS | =10.13.6-supplemental_update | |
Apple iOS and macOS | =10.14.6-security_update_2019-001 | |
Apple iOS and macOS | =10.14.6-security_update_2019-002 | |
Apple iOS and macOS | =10.14.6-security_update_2019-004 | |
Apple iOS and macOS | =10.14.6-security_update_2019-005 | |
Apple iOS and macOS | =10.14.6-security_update_2019-006 | |
Apple iOS and macOS | =10.14.6-security_update_2019-007 | |
Apple iOS and macOS | =10.14.6-security_update_2020-001 | |
Apple iOS and macOS | =10.14.6-security_update_2020-002 | |
Apple iOS and macOS | =10.14.6-security_update_2020-003 | |
Apple iOS and macOS | =10.14.6-security_update_2020-004 | |
Apple iOS and macOS | =10.14.6-security_update_2020-005 | |
Apple iOS and macOS | =10.14.6-security_update_2020-006 | |
Apple iOS and macOS | =10.14.6-security_update_2020-007 | |
Apple iOS and macOS | =10.14.6-security_update_2021-001 | |
Apple iOS and macOS | =10.14.6-security_update_2021-002 | |
Apple iOS and macOS | =10.14.6-security_update_2021-003 | |
Apple iOS and macOS | =10.14.6-supplemental_update | |
Apple iOS and macOS | =10.14.6-supplemental_update_2 | |
Oracle Sun ZFS Storage Appliance Kit | =8.8 | |
Oracle Solaris SPARC | =10 | |
Oracle Solaris SPARC | =11 | |
netapp h410c firmware | ||
netapp h410c | ||
netapp h300s firmware | ||
netapp h300s | ||
NetApp H500S Firmware | ||
netapp h500s | ||
netapp h700s firmware | ||
netapp h700s | ||
netapp h300e firmware | ||
netapp h300e | ||
netapp h500e firmware | ||
netapp h500e | ||
netapp h700e firmware | ||
netapp h700e | ||
netapp h410s firmware | ||
netapp h410s |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2020-12243.
The vulnerability affects Apple macOS Catalina, Apple Mojave, and Apple High Sierra.
The severity of CVE-2020-12243 is not specified.
This vulnerability was addressed with improved checks.
More information about this vulnerability can be found at the following link: [CVE-2020-12243](https://support.apple.com/en-us/HT211289)