Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
openldap openldap 2.4.40 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2015-1546
Double free vulnerability in the get_vrFilter function in servers/slapd/filter.c in OpenLDAP 2.4.40 allows remote malicious users to cause a denial of service (crash) via a crafted search query with a matched values control.
Openldap Openldap 2.4.40
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Apple Mac Os X 10.10.2
5
CVSSv2
CVE-2015-1545
The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 up to and including 2.4.40 allows remote malicious users to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.
Openldap Openldap 2.4.39
Openldap Openldap 2.4.17
Openldap Openldap 2.4.37
Openldap Openldap 2.4.26
Openldap Openldap 2.4.31
Openldap Openldap 2.4.40
Openldap Openldap 2.4.16
Openldap Openldap 2.4.29
Openldap Openldap 2.4.32
Openldap Openldap 2.4.22
Openldap Openldap 2.4.25
Openldap Openldap 2.4.20
Openldap Openldap 2.4.15
Openldap Openldap 2.4.18
Openldap Openldap 2.4.27
Openldap Openldap 2.4.36
Openldap Openldap 2.4.38
Openldap Openldap 2.4.28
Openldap Openldap 2.4.23
Openldap Openldap 2.4.24
Openldap Openldap 2.4.34
Openldap Openldap 2.4.14
4
CVSSv2
CVE-2014-9713
The default slapd configuration in the Debian openldap package 2.4.23-3 up to and including 2.4.39-1.1 allows remote authenticated users to modify the user's permissions and other user attributes via unspecified vectors.
Openldap Openldap 2.4.23
Openldap Openldap 2.4.30
Openldap Openldap 2.4.24
Openldap Openldap 2.4.25
Openldap Openldap 2.4.32
Openldap Openldap 2.4.33
Openldap Openldap 2.4.26
Openldap Openldap 2.4.27
Openldap Openldap 2.4.34
Openldap Openldap 2.4.35
Openldap Openldap 2.4.31
Openldap Openldap 2.4.39
Openldap Openldap 2.4.28
Openldap Openldap 2.4.29
Openldap Openldap 2.4.36
Openldap Openldap 2.4.37
Openldap Openldap 2.4.38
Debian Debian Linux 7.0
5
CVSSv2
CVE-2015-6908
The ber_get_next function in libraries/liblber/io.c in OpenLDAP 2.4.42 and previous versions allows remote malicious users to cause a denial of service (reachable assertion and application crash) via crafted BER data, as demonstrated by an attack against slapd.
Openldap Openldap
Apple Mac Os X
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started