7.5
CWE
191
Advisory Published
Updated

CVE-2020-36228: Integer Underflow

First published: Mon Jan 25 2021(Updated: )

An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Certificate List Exact Assertion processing, resulting in denial of service.

Credit: CVE-2020-36226 CVE-2020-36229 CVE-2020-36225 CVE-2020-36224 CVE-2020-36223 CVE-2020-36227 CVE-2020-36228 CVE-2020-36221 CVE-2020-36222 CVE-2020-36230 CVE-2020-36226 CVE-2020-36229 CVE-2020-36225 CVE-2020-36224 CVE-2020-36223 CVE-2020-36227 CVE-2020-36228 CVE-2020-36221 CVE-2020-36222 CVE-2020-36230 cve@mitre.org CVE-2020-36226 CVE-2020-36227 CVE-2020-36223 CVE-2020-36224 CVE-2020-36225 CVE-2020-36221 CVE-2020-36228 CVE-2020-36222 CVE-2020-36230 CVE-2020-36229

Affected SoftwareAffected VersionHow to fix
debian/openldap
2.4.47+dfsg-3+deb10u7
2.4.57+dfsg-3+deb11u1
2.5.13+dfsg-5
Apple Catalina
Apple Mojave
Apple macOS Big Sur<11.4
11.4
Openldap Openldap<2.4.57
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Apple macOS>=11.1<11.4

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Parent vulnerabilities

(Appears in the following advisories)

Frequently Asked Questions

  • What is CVE-2020-36228?

    CVE-2020-36228 is a vulnerability in OpenLDAP that was addressed with improved checks.

  • How does CVE-2020-36228 affect macOS Big Sur?

    CVE-2020-36228 affects macOS Big Sur version 11.4.

  • How does CVE-2020-36228 affect macOS Mojave?

    CVE-2020-36228 affects macOS Mojave.

  • How does CVE-2020-36228 affect macOS Catalina?

    CVE-2020-36228 affects macOS Catalina.

  • How can I fix CVE-2020-36228?

    To fix CVE-2020-36228, update your operating system to the latest version provided by Apple.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203