Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
openldap openldap 2.4.40 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2015-6908
The ber_get_next function in libraries/liblber/io.c in OpenLDAP 2.4.42 and previous versions allows remote malicious users to cause a denial of service (reachable assertion and application crash) via crafted BER data, as demonstrated by an attack against slapd.
Openldap Openldap
Apple Mac Os X
1 EDB exploit
NA
CVE-2014-9713
The default slapd configuration in the Debian openldap package 2.4.23-3 up to and including 2.4.39-1.1 allows remote authenticated users to modify the user's permissions and other user attributes via unspecified vectors.
Openldap Openldap 2.4.23
Openldap Openldap 2.4.30
Openldap Openldap 2.4.24
Openldap Openldap 2.4.25
Openldap Openldap 2.4.32
Openldap Openldap 2.4.33
Openldap Openldap 2.4.26
Openldap Openldap 2.4.27
Openldap Openldap 2.4.34
Openldap Openldap 2.4.35
Openldap Openldap 2.4.31
Openldap Openldap 2.4.39
Openldap Openldap 2.4.28
Openldap Openldap 2.4.29
Openldap Openldap 2.4.36
Openldap Openldap 2.4.37
Openldap Openldap 2.4.38
Debian Debian Linux 7.0
NA
CVE-2015-1546
Double free vulnerability in the get_vrFilter function in servers/slapd/filter.c in OpenLDAP 2.4.40 allows remote malicious users to cause a denial of service (crash) via a crafted search query with a matched values control.
Openldap Openldap 2.4.40
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Apple Mac Os X 10.10.2
NA
CVE-2015-1545
The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 up to and including 2.4.40 allows remote malicious users to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.
Openldap Openldap 2.4.39
Openldap Openldap 2.4.17
Openldap Openldap 2.4.37
Openldap Openldap 2.4.26
Openldap Openldap 2.4.31
Openldap Openldap 2.4.40
Openldap Openldap 2.4.16
Openldap Openldap 2.4.29
Openldap Openldap 2.4.32
Openldap Openldap 2.4.22
Openldap Openldap 2.4.25
Openldap Openldap 2.4.20
Openldap Openldap 2.4.15
Openldap Openldap 2.4.18
Openldap Openldap 2.4.27
Openldap Openldap 2.4.36
Openldap Openldap 2.4.38
Openldap Openldap 2.4.28
Openldap Openldap 2.4.23
Openldap Openldap 2.4.24
Openldap Openldap 2.4.34
Openldap Openldap 2.4.14
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4761
command injection
CVE-2024-3676
IDOR
CVE-2024-30039
CVE-2024-32113
CVE-2024-30049
CVE-2024-4776
SQL injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started