CVE-2013-1897
published 2013-05-13CVE-2013-1897: The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1.2.x before 1.2.11.20 and 1.3.x before 1.3.0.5 does not properly restrict access…
PriorityP414low2.6CVSS 2.0
AVNACHAuNCPINAN
EPSS
2.10%
79.7th percentile
The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1.2.x before 1.2.11.20 and 1.3.x before 1.3.0.5 does not properly restrict access to entries when the nsslapd-allow-anonymous-access configuration is set to rootdse and the BASE search scope is used, which allows remote attackers to obtain sensitive information outside of the rootDSE via a crafted LDAP search.
Affected
38 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | 389-ds-base | < 389-ds-base 1.3.2.9-1 (bookworm) | 389-ds-base 1.3.2.9-1 (bookworm) |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
CVSS provenance
nvdv2.02.6LOWAV:N/AC:H/Au:N/C:P/I:N/A:N
osv2.6LOW
vendor_debian2.6LOW
vendor_redhat2.6LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xpx8-wp93-8pmf: The do_search function in ldap/servers/slapd/search
ghsa_unreviewed·2022-05-17
CVE-2013-1897 [LOW] GHSA-xpx8-wp93-8pmf: The do_search function in ldap/servers/slapd/search
The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1.2.x before 1.2.11.20 and 1.3.x before 1.3.0.5 does not properly restrict access to entries when the nsslapd-allow-anonymous-access configuration is set to rootdse and the BASE search scope is used, which allows remote attackers to obtain sensitive information outside of the rootDSE via a crafted LDAP search.
OSV
CVE-2013-1897: The do_search function in ldap/servers/slapd/search
osv·2013-05-13·CVSS 2.6
CVE-2013-1897 [LOW] CVE-2013-1897: The do_search function in ldap/servers/slapd/search
The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1.2.x before 1.2.11.20 and 1.3.x before 1.3.0.5 does not properly restrict access to entries when the nsslapd-allow-anonymous-access configuration is set to rootdse and the BASE search scope is used, which allows remote attackers to obtain sensitive information outside of the rootDSE via a crafted LDAP search.
Red Hat
389-ds: unintended information exposure when rootdse is enabled
vendor_redhat·2013-03-28·CVSS 2.6
CVE-2013-1897 [LOW] 389-ds: unintended information exposure when rootdse is enabled
389-ds: unintended information exposure when rootdse is enabled
The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1.2.x before 1.2.11.20 and 1.3.x before 1.3.0.5 does not properly restrict access to entries when the nsslapd-allow-anonymous-access configuration is set to rootdse and the BASE search scope is used, which allows remote attackers to obtain sensitive information outside of the rootDSE via a crafted LDAP search.
Package: ipa (Red Hat Enterprise Linux 6) - Affected
Debian
CVE-2013-1897: 389-ds-base - The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1....
vendor_debian·2013·CVSS 2.6
CVE-2013-1897 [LOW] CVE-2013-1897: 389-ds-base - The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1....
The do_search function in ldap/servers/slapd/search.c in 389 Directory Server 1.2.x before 1.2.11.20 and 1.3.x before 1.3.0.5 does not properly restrict access to entries when the nsslapd-allow-anonymous-access configuration is set to rootdse and the BASE search scope is used, which allows remote attackers to obtain sensitive information outside of the rootDSE via a crafted LDAP search.
Scope: local
bookworm: resolved (fixed in 1.3.2.9-1)
bullseye: resolved (fixed in 1.3.2.9-1)
sid: resolved (fixed in 1.3.2.9-1)
trixie: resolved (fixed in 1.3.2.9-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled [fedora-all]
bugzilla·2013-03-28·CVSS 2.6
CVE-2013-1897 [LOW] CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled [fedora-all]
CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: t
Bugzilla
CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled [fedora-all]
bugzilla·2013-03-28·CVSS 2.6
CVE-2013-1897 [LOW] CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled [fedora-all]
CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: t
Bugzilla
CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled
bugzilla·2013-03-26·CVSS 2.6
CVE-2013-1897 [LOW] CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled
CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled
It was found that the 389 Directory Server did not properly restrict access to entries when the 'nsslapd-allow-anonymous-access' configuration setting is set to 'rootdse'. An anonymous user could connect to the LDAP database and, if the search scope is set to BASE, obtain access to information outside of the rootDSE. The 'rootdse' option exists to provide anonymous access to the rootDSE but no other entries in the directory. An administrator could believe that directory entries are being restricted with this option enabled, however the information provided would be the same as if 'nsslapd-allow-anonymous-access' were set to 'on'.
ACI's are still properly evaluated despite this flaw, so this can easily be mitiga
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101323.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0742.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=928105https://fedorahosted.org/389/ticket/47308https://fedorahosted.org/freeipa/ticket/3540https://git.fedorahosted.org/cgit/389/ds.git/commit/?h=389-ds-base-1.2.11&id=5a18c828533a670e7143327893f8171a19062286http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101323.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0742.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=928105https://fedorahosted.org/389/ticket/47308https://fedorahosted.org/freeipa/ticket/3540https://git.fedorahosted.org/cgit/389/ds.git/commit/?h=389-ds-base-1.2.11&id=5a18c828533a670e7143327893f8171a19062286
2013-05-13
Published