Multiple buffer overflows in the login mechanism in sidvault in Alpha Centauri Software SIDVault LDAP Server before 2.0f allow remote attackers to execute arbitrary code via crafted LDAP packets, as demonstrated by a long dc entry in an LDAP bind.
References
Configurations
History
21 Nov 2024, 00:35
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065453.html - | |
References | () http://secunia.com/advisories/26613 - Patch, Vendor Advisory | |
References | () http://securityreason.com/securityalert/3061 - | |
References | () http://www.securityfocus.com/archive/1/477821/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/25460 - | |
References | () http://www.securitytracker.com/id?1018612 - | |
References | () http://www.vupen.com/english/advisories/2007/2976 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/36272 - |
Information
Published : 2007-08-28 01:17
Updated : 2024-11-21 00:35
NVD link : CVE-2007-4566
Mitre link : CVE-2007-4566
CVE.ORG link : CVE-2007-4566
JSON object : View
Products Affected
alpha_centauri_software
- sidvault_ldap_server
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer