REDHAT-BUG-2055815: Medium severity red hat directory server vulnerability
A vulnerability was discovered in the 389 Directory Server that allows an unauthenticated attacker with network access to the LDAP port to cause a denial of service. The denial of service is triggered by a single message sent over a TCP connection, no bind or other authentication is required. The message triggers a segmentation fault that results in slapd crashing.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2055815?
The severity of REDHAT-BUG-2055815 is classified as a denial of service vulnerability.
How do I fix REDHAT-BUG-2055815?
To fix REDHAT-BUG-2055815, update your Red Hat 389 Directory Server to the latest patched version.
Who is affected by REDHAT-BUG-2055815?
Any user running the Red Hat 389 Directory Server is affected by REDHAT-BUG-2055815.
Can an authenticated user trigger REDHAT-BUG-2055815?
No, REDHAT-BUG-2055815 can be triggered by unauthenticated users with network access.
What kind of attack does REDHAT-BUG-2055815 facilitate?
REDHAT-BUG-2055815 facilitates a denial of service attack by sending a single message over a TCP connection.