CVE-2006-0452
published 2006-02-14CVE-2006-0452: dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via a ModDN…
PriorityP416medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.59%
72.9th percentile
dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via a ModDN operation with a DN that contains a large number of "," (comma) characters, which results in a large amount of recursion, as demonstrated using the ProtoVer LDAP test suite.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | fedora_core | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
recursion causes OOM with bad DN in dn2ancestor
vendor_redhat·2004-12-23·CVSS 5.0
CVE-2006-0452 [MEDIUM] recursion causes OOM with bad DN in dn2ancestor
recursion causes OOM with bad DN in dn2ancestor
dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via a ModDN operation with a DN that contains a large number of "," (comma) characters, which results in a large amount of recursion, as demonstrated using the ProtoVer LDAP test suite.
GHSA
GHSA-726h-m824-rg83: dn2ancestor in the LDAP component in Fedora Directory Server 1
ghsa_unreviewed·2022-05-01
CVE-2006-0452 [MEDIUM] GHSA-726h-m824-rg83: dn2ancestor in the LDAP component in Fedora Directory Server 1
dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via a ModDN operation with a DN that contains a large number of "," (comma) characters, which results in a large amount of recursion, as demonstrated using the ProtoVer LDAP test suite.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=179137http://secunia.com/advisories/18960http://www.securityfocus.com/bid/16677https://exchange.xforce.ibmcloud.com/vulnerabilities/24796http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=179137http://secunia.com/advisories/18960http://www.securityfocus.com/bid/16677https://exchange.xforce.ibmcloud.com/vulnerabilities/24796
2006-02-14
Published