cbcvebase.
CVE-2006-4521
published 2006-11-04

CVE-2006-4521: The BerDecodeLoginDataRequest function in the libnmasldap.so NMAS module in Novell eDirectory 8.8 and 8.8.1 before the Security Services 2.0.3 patch does not…

medium5CVSS 3.1
AVNACLAuNCNINAP
The BerDecodeLoginDataRequest function in the libnmasldap.so NMAS module in Novell eDirectory 8.8 and 8.8.1 before the Security Services 2.0.3 patch does not properly increment a pointer when handling certain input, which allows remote attackers to cause a denial of service (invalid memory access) via a crafted login request.

Affected

2 ranges
VendorProductVersion rangeFixed in
novelledirectory
novelledirectory