First published: Mon Jan 25 2021(Updated: )
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Certificate List Exact Assertion processing, resulting in denial of service.
Credit: CVE-2020-36226 CVE-2020-36229 CVE-2020-36225 CVE-2020-36224 CVE-2020-36223 CVE-2020-36227 CVE-2020-36228 CVE-2020-36221 CVE-2020-36222 CVE-2020-36230 CVE-2020-36226 CVE-2020-36229 CVE-2020-36225 CVE-2020-36224 CVE-2020-36223 CVE-2020-36227 CVE-2020-36228 CVE-2020-36221 CVE-2020-36222 CVE-2020-36230 cve@mitre.org CVE-2020-36226 CVE-2020-36227 CVE-2020-36223 CVE-2020-36224 CVE-2020-36225 CVE-2020-36221 CVE-2020-36228 CVE-2020-36222 CVE-2020-36230 CVE-2020-36229
Affected Software | Affected Version | How to fix |
---|---|---|
debian/openldap | 2.4.47+dfsg-3+deb10u7 2.4.57+dfsg-3+deb11u1 2.5.13+dfsg-5 | |
Apple Catalina | ||
Apple Mojave | ||
Apple macOS Big Sur | <11.4 | 11.4 |
Openldap Openldap | <2.4.57 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
Apple macOS | >=11.1<11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-36228 is a vulnerability in OpenLDAP that was addressed with improved checks.
CVE-2020-36228 affects macOS Big Sur version 11.4.
CVE-2020-36228 affects macOS Mojave.
CVE-2020-36228 affects macOS Catalina.
To fix CVE-2020-36228, update your operating system to the latest version provided by Apple.