CVE-2011-4079
published 2011-10-27CVE-2011-4079: Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earlier allows remote attackers to cause a denial of service (slapd crash) via a…
PriorityP420medium4CVSS 2.0
AVNACLAuSCNINAP
EPSS
3.71%
88.5th percentile
Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earlier allows remote attackers to cause a denial of service (slapd crash) via a zero-length string that triggers a heap-based buffer overflow, as demonstrated using an empty postalAddressAttribute value in an LDIF entry.
Affected
180 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | openldap | < openldap 2.4.28-1 (bookworm) | openldap 2.4.28-1 (bookworm) |
| openldap | openldap | <= 2.4.26 | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
| openldap | openldap | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv4.0MEDIUM
vendor_debian4.0LOW
vendor_redhat4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenLDAP vulnerability
vendor_ubuntu·2011-11-17
CVE-2011-4079 OpenLDAP vulnerability
Title: OpenLDAP vulnerability
Summary: An OpenLDAP server could potentially be made to crash if it received
specially crafted network traffic from an authenticated user.
It was discovered that slapd contained an off-by-one error. An
authenticated attacker could potentially exploit this by sending a
crafted crafted LDIF entry containing an empty postalAddress.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
openldap: one-byte buffer overflow in slapd
vendor_redhat·2011-10-06·CVSS 4.0
CVE-2011-4079 [MEDIUM] openldap: one-byte buffer overflow in slapd
openldap: one-byte buffer overflow in slapd
Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earlier allows remote attackers to cause a denial of service (slapd crash) via a zero-length string that triggers a heap-based buffer overflow, as demonstrated using an empty postalAddressAttribute value in an LDIF entry.
Statement: The Red Hat Security Response Team does not consider this to be a security issue. For additional information, refer to: https://bugzilla.redhat.com/show_bug.cgi?id=749324#c1.
Package: openldap (Red Hat Enterprise Linux 4) - Not affected
Package: openldap (Red Hat Enterprise Linux 5) - Not affected
Package: openldap (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2011-4079: openldap - Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earl...
vendor_debian·2011·CVSS 4.0
CVE-2011-4079 [MEDIUM] CVE-2011-4079: openldap - Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earl...
Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earlier allows remote attackers to cause a denial of service (slapd crash) via a zero-length string that triggers a heap-based buffer overflow, as demonstrated using an empty postalAddressAttribute value in an LDIF entry.
Scope: local
bookworm: resolved (fixed in 2.4.28-1)
bullseye: resolved (fixed in 2.4.28-1)
forky: resolved (fixed in 2.4.28-1)
sid: resolved (fixed in 2.4.28-1)
trixie: resolved (fixed in 2.4.28-1)
GHSA
GHSA-9v33-989g-pj7q: Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2
ghsa_unreviewed·2022-05-17
CVE-2011-4079 [MEDIUM] GHSA-9v33-989g-pj7q: Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2
Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earlier allows remote attackers to cause a denial of service (slapd crash) via a zero-length string that triggers a heap-based buffer overflow, as demonstrated using an empty postalAddressAttribute value in an LDIF entry.
OSV
CVE-2011-4079: Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2
osv·2011-10-27·CVSS 4.0
CVE-2011-4079 [MEDIUM] CVE-2011-4079: Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2
Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earlier allows remote attackers to cause a denial of service (slapd crash) via a zero-length string that triggers a heap-based buffer overflow, as demonstrated using an empty postalAddressAttribute value in an LDIF entry.
No detection rules found.
No public exploits indexed.
http://secunia.com/advisories/46599http://security.gentoo.org/glsa/glsa-201406-36.xmlhttp://www.openldap.org/devel/gitweb.cgi?p=openldap.git%3Ba=commitdiff%3Bh=507238713b71208ec4f262f312cb495a302df9e9http://www.openldap.org/its/index.cgi/Software%20Bugs?id=7059%3Bselectid=7059http://www.openwall.com/lists/oss-security/2011/10/26/5http://www.openwall.com/lists/oss-security/2011/10/26/9http://www.securityfocus.com/bid/50384http://www.ubuntu.com/usn/USN-1266-1https://bugzilla.redhat.com/show_bug.cgi?id=749324https://exchange.xforce.ibmcloud.com/vulnerabilities/70991http://secunia.com/advisories/46599http://security.gentoo.org/glsa/glsa-201406-36.xmlhttp://www.openldap.org/devel/gitweb.cgi?p=openldap.git%3Ba=commitdiff%3Bh=507238713b71208ec4f262f312cb495a302df9e9http://www.openldap.org/its/index.cgi/Software%20Bugs?id=7059%3Bselectid=7059http://www.openwall.com/lists/oss-security/2011/10/26/5http://www.openwall.com/lists/oss-security/2011/10/26/9http://www.securityfocus.com/bid/50384http://www.ubuntu.com/usn/USN-1266-1https://bugzilla.redhat.com/show_bug.cgi?id=749324https://exchange.xforce.ibmcloud.com/vulnerabilities/70991
2011-10-27
Published