Wind River Support Network

HomeDefectsLIN1018-1071
Not to be fixed

LIN1018-1071 : Security Advisory - openldap - CVE-2017-17740

Created: May 14, 2018    Updated: Nov 2, 2023
Resolved Date: Nov 2, 2023
Found In Version: unknown
Severity: Standard
Applicable for: Wind River Linux LTS 18
Component/s: Userspace

Description

contrib/slapd-modules/nops/nops.c in OpenLDAP through 2.4.45, when both the nops module and the memberof overlay are enabled, attempts to free a buffer that was allocated on the stack, which allows remote attackers to cause a denial of service (slapd crash) via a member MODDN operation.

https://access.redhat.com/security/cve/cve-2017-17740
Live chat
Online