CVE-2012-0743
published 2012-04-22CVE-2012-0743: IBM Tivoli Directory Server (TDS) 6.3 and earlier allows remote attackers to cause a denial of service (daemon crash) via a malformed LDAP paged search request.
PriorityP421medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.74%
75.1th percentile
IBM Tivoli Directory Server (TDS) 6.3 and earlier allows remote attackers to cause a denial of service (daemon crash) via a malformed LDAP paged search request.
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | tivoli_directory_server | <= 6.3.0 | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
| ibm | tivoli_directory_server | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-65r6-55h6-5m62: IBM Tivoli Directory Server (TDS) 6
ghsa_unreviewed·2022-05-17
CVE-2012-0743 [MEDIUM] GHSA-65r6-55h6-5m62: IBM Tivoli Directory Server (TDS) 6
IBM Tivoli Directory Server (TDS) 6.3 and earlier allows remote attackers to cause a denial of service (daemon crash) via a malformed LDAP paged search request.
Red Hat
kernel: kvm: buffer overflow in kvm_set_irq()
vendor_redhat·2012-06-05·CVSS 6.9
CVE-2012-2137 [MEDIUM] kernel: kvm: buffer overflow in kvm_set_irq()
kernel: kvm: buffer overflow in kvm_set_irq()
Buffer overflow in virt/kvm/irq_comm.c in the KVM subsystem in the Linux kernel before 3.2.24 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to Message Signaled Interrupts (MSI), irq routing entries, and an incorrect check by the setup_routing_entry function before invoking the kvm_set_irq function.
Statement: This issue did not affect the versions of the Linux kernel as shipped with Red Hat Enterprise Linux 5 and Red Hat Enterprise MRG. This issue was addressed in Red Hat Enterprise Linux 6 via RHSA-2012:0743 https://rhn.redhat.com/errata/RHSA-2012-0743.html
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: realtime-kernel (Red Hat Enterprise MRG 2) - Not a
Red Hat
kernel: mm: read_pmd_atomic: 32bit PAE pmd walk vs pmd_populate SMP race condition
vendor_redhat·2012-05-17·CVSS 4.0
CVE-2012-2373 [MEDIUM] kernel: mm: read_pmd_atomic: 32bit PAE pmd walk vs pmd_populate SMP race condition
kernel: mm: read_pmd_atomic: 32bit PAE pmd walk vs pmd_populate SMP race condition
The Linux kernel before 3.4.5 on the x86 platform, when Physical Address Extension (PAE) is enabled, does not properly use the Page Middle Directory (PMD), which allows local users to cause a denial of service (panic) via a crafted application that triggers a race condition.
Statement: This issue did not affect the versions of the Linux kernel as shipped with Red Hat Enterprise Linux 5 and Red Hat Enterprise MRG. Kernel update RHSA-2012:0743 https://rhn.redhat.com/errata/RHSA-2012-0743.html for Red Hat Enterprise Linux 6 did address this issue.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: realtime-kernel (Red Hat Enterprise MRG 2) - Affected
Red Hat
kernel: fcaps: clear the same personality flags as suid when fcaps are used
vendor_redhat·2012-04-17·CVSS 7.2
CVE-2012-2123 [HIGH] kernel: fcaps: clear the same personality flags as suid when fcaps are used
kernel: fcaps: clear the same personality flags as suid when fcaps are used
The cap_bprm_set_creds function in security/commoncap.c in the Linux kernel before 3.3.3 does not properly handle the use of file system capabilities (aka fcaps) for implementing a privileged executable file, which allows local users to bypass intended personality restrictions via a crafted application, as demonstrated by an attack that uses a parent process to disable ASLR.
Statement: This issue did not affect the Linux kernel as shipped with Red Hat Enterprise Linux 4, and 5. This has been addressed in Red Hat Enterprise MRG via https://rhn.redhat.com/errata/RHSA-2012-0670.html. This has been addressed in Red Hat Enterprise Linux 6 via https://rhn.redhat.com/errata/RHSA-2012-0743.html.
Package: kernel (Red Hat
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-2372 kernel: rds-ping cause kernel panic
bugzilla·2012-05-18·CVSS 4.4
CVE-2012-2372 [MEDIUM] CVE-2012-2372 kernel: rds-ping cause kernel panic
CVE-2012-2372 kernel: rds-ping cause kernel panic
Reported by Li Honggang (internal):
Attempting an rds connection from the IP address of an IPoIB interface to itself causes a kernel panic due to a BUG_ON() being triggered. Making the test less strict allows rds-ping to work without crashing the machine.
A local unprivileged user could use this flaw to crash the sytem.
Discussion:
Statement:
This issue did not affect the versions of the Linux kernel as shipped with Red Hat Enterprise Linux MRG. Future kernel updates for Red Hat Enterprise Linux 5 and 6 may address this issue.
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:0743 https://rhn.redhat.com/errata/RHSA-2012-0743.html
---
Acknowledgements:
This issue was discovered by L
Bugzilla
CVE-2012-2137 kernel: kvm: buffer overflow in kvm_set_irq()
bugzilla·2012-04-25·CVSS 6.9
CVE-2012-2137 [MEDIUM] CVE-2012-2137 kernel: kvm: buffer overflow in kvm_set_irq()
CVE-2012-2137 kernel: kvm: buffer overflow in kvm_set_irq()
kvm_set_irq() has an internal buffer of three irq routing entries, allowing connecting a GSI to three IRQ chips or on MSI. However setup_routing_entry() does not properly enforce this, allowing three irqchip routes followed by an MSI route to overflow the buffer.
An unprivileged local user could use this flaw to crash the system or potentialy escalate their privileges.
Discussion:
Statement:
This issue did not affect the versions of the Linux kernel as shipped with Red Hat Enterprise Linux 5 and Red Hat Enterprise MRG. This issue was addressed in Red Hat Enterprise Linux 6 via RHSA-2012:0743 https://rhn.redhat.com/errata/RHSA-2012-0743.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
http://www-01.ibm.com/support/docview.wss?uid=swg21591267http://www.ibm.com/support/docview.wss?uid=swg1IO15707http://www.ibm.com/support/docview.wss?uid=swg1IO16001http://www.ibm.com/support/docview.wss?uid=swg1IO16002http://www.securityfocus.com/bid/53043http://www.securitytracker.com/id?1026938http://www-01.ibm.com/support/docview.wss?uid=swg21591267http://www.ibm.com/support/docview.wss?uid=swg1IO15707http://www.ibm.com/support/docview.wss?uid=swg1IO16001http://www.ibm.com/support/docview.wss?uid=swg1IO16002http://www.securityfocus.com/bid/53043http://www.securitytracker.com/id?1026938
2012-04-22
Published