CVE-2017-15135
published 2018-01-24CVE-2017-15135: It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not always handle internal hash comparison operations correctly during the…
PriorityP354high8.1CVSS 3.0
AVNACHPRNUINSUCHIHAH
EPSS
3.83%
88.9th percentile
It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not always handle internal hash comparison operations correctly during the authentication process. A remote, unauthenticated attacker could potentially use this flaw to bypass the authentication process under very rare and specific circumstances.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | 389-ds-base | < 389-ds-base 1.3.7.9-1 (bookworm) | 389-ds-base 1.3.7.9-1 (bookworm) |
| fedoraproject | 389_directory_server | 1.3.6.1 – 1.4.0.3 | — |
| port389 | 389-ds-base | >= 0 < 1.3.7.9-1 | 1.3.7.9-1 |
| port389 | 389-ds-base | >= 0 < 1.3.7.9-1 | 1.3.7.9-1 |
| port389 | 389-ds-base | >= 0 < 1.3.7.9-1 | 1.3.7.9-1 |
| red_hat_inc | 389-ds-base | — | — |
CVSS provenance
nvdv3.08.1HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-frrc-qvjw-hwj9: It was found that 389-ds-base since 1
ghsa_unreviewed·2022-05-14
CVE-2017-15135 [HIGH] CWE-287 GHSA-frrc-qvjw-hwj9: It was found that 389-ds-base since 1
It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not always handle internal hash comparison operations correctly during the authentication process. A remote, unauthenticated attacker could potentially use this flaw to bypass the authentication process under very rare and specific circumstances.
OSV
CVE-2017-15135: It was found that 389-ds-base since 1
osv·2018-01-24·CVSS 8.1
CVE-2017-15135 [HIGH] CVE-2017-15135: It was found that 389-ds-base since 1
It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not always handle internal hash comparison operations correctly during the authentication process. A remote, unauthenticated attacker could potentially use this flaw to bypass the authentication process under very rare and specific circumstances.
Red Hat
389-ds-base: Authentication bypass due to lack of size check in slapi_ct_memcmp function in ch_malloc.c
vendor_redhat·2018-01-22·CVSS 8.1
CVE-2017-15135 [HIGH] CWE-287 389-ds-base: Authentication bypass due to lack of size check in slapi_ct_memcmp function in ch_malloc.c
389-ds-base: Authentication bypass due to lack of size check in slapi_ct_memcmp function in ch_malloc.c
It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not always handle internal hash comparison operations correctly during the authentication process. A remote, unauthenticated attacker could potentially use this flaw to bypass the authentication process under very rare and specific circumstances.
It was found that 389-ds-base did not always handle internal hash comparison operations correctly during the authentication process. A remote, unauthenticated attacker could potentially use this flaw to bypass the authentication process under very rare and specific circumstances.
Debian
CVE-2017-15135: 389-ds-base - It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not ...
vendor_debian·2017·CVSS 8.1
CVE-2017-15135 [HIGH] CVE-2017-15135: 389-ds-base - It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not ...
It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not always handle internal hash comparison operations correctly during the authentication process. A remote, unauthenticated attacker could potentially use this flaw to bypass the authentication process under very rare and specific circumstances.
Scope: local
bookworm: resolved (fixed in 1.3.7.9-1)
bullseye: resolved (fixed in 1.3.7.9-1)
sid: resolved (fixed in 1.3.7.9-1)
trixie: resolved (fixed in 1.3.7.9-1)
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00033.htmlhttp://www.securityfocus.com/bid/102811https://access.redhat.com/errata/RHSA-2018:0414https://access.redhat.com/errata/RHSA-2018:0515https://bugzilla.redhat.com/show_bug.cgi?id=1525628http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00033.htmlhttp://www.securityfocus.com/bid/102811https://access.redhat.com/errata/RHSA-2018:0414https://access.redhat.com/errata/RHSA-2018:0515https://bugzilla.redhat.com/show_bug.cgi?id=1525628
2018-01-24
Published