CVE-2006-0453Redhat Fedora Core vulnerability

6 documents5 sources
Severity
7.8HIGHNVD
EPSS
0.8%
top 25.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 14
Latest updateMay 1

Description

The LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (crash) via a certain "bad BER sequence" that results in a free of uninitialized memory, as demonstrated using the ProtoVer LDAP test suite.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-22q9-7cmf-jjxp: The LDAP component in Fedora Directory Server 12022-05-01
CVEList
CVE-2006-0453: The LDAP component in Fedora Directory Server 12006-02-14

📋Vendor Advisories

2
Red Hat
memory leaks using ber_scanf when handling bad BER packets (CVE-2006-0453)2007-02-13
Red Hat
security flaw2005-02-14

💬Community

1
Bugzilla
CVE-2006-0453 security flaw2018-08-16
CVE-2006-0453 — Redhat Fedora Core vulnerability | cvebase