First published: Mon Jan 25 2021(Updated: )
A flaw was discovered in OpenLDAP before 2.4.57 leading to an infinite loop in slapd with the cancel_extop Cancel operation, resulting in denial of service.
Credit: CVE-2020-36226 CVE-2020-36229 CVE-2020-36225 CVE-2020-36224 CVE-2020-36223 CVE-2020-36227 CVE-2020-36228 CVE-2020-36221 CVE-2020-36222 CVE-2020-36230 CVE-2020-36226 CVE-2020-36229 CVE-2020-36225 CVE-2020-36224 CVE-2020-36223 CVE-2020-36227 CVE-2020-36228 CVE-2020-36221 CVE-2020-36222 CVE-2020-36230 cve@mitre.org CVE-2020-36226 CVE-2020-36227 CVE-2020-36223 CVE-2020-36224 CVE-2020-36225 CVE-2020-36221 CVE-2020-36228 CVE-2020-36222 CVE-2020-36230 CVE-2020-36229
Affected Software | Affected Version | How to fix |
---|---|---|
Openldap Openldap | <2.4.57 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
Apple macOS | >=11.1<11.4 | |
Apple Catalina | ||
debian/openldap | 2.4.47+dfsg-3+deb10u7 2.4.57+dfsg-3+deb11u1 2.5.13+dfsg-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2020-36227.
The macOS Big Sur version up to and excluding 11.4, Mojave, and Catalina are affected by this vulnerability.
This vulnerability was addressed with improved checks.
Yes, Apple has provided remedies for this vulnerability. Please refer to the following links for more information: [link1](https://support.apple.com/en-us/HT212530), [link2](https://support.apple.com/en-us/HT212529), [link3](https://support.apple.com/en-us/HT212531).