Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
openldap openldap 2.2.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-2754
Stack-based buffer overflow in st.c in slurpd for OpenLDAP prior to 2.3.22 might allow malicious users to execute arbitrary code via a long hostname.
Openldap Openldap 2.2.18
Openldap Openldap 2.2.12
Openldap Openldap 2.2.20
Openldap Openldap 2.2.13
Openldap Openldap 2.2.14
Openldap Openldap 2.2.21
Openldap Openldap 2.2.1
Openldap Openldap 2.2.15
Openldap Openldap 2.2.11
Openldap Openldap 2.2.17
Openldap Openldap 2.2.19
Openldap Openldap 2.2.16
NA
CVE-2007-5707
OpenLDAP prior to 2.3.39 allows remote malicious users to cause a denial of service (slapd crash) via an LDAP request with a malformed objectClasses attribute. NOTE: this has been reported as a double free, but the reports are inconsistent.
Openldap Openldap 2.0.2
Openldap Openldap 2.0.11 11
Openldap Openldap 2.1.15
Openldap Openldap 2.1.10
Openldap Openldap 2.3.28 2.20061022
Openldap Openldap 2.2.4
Openldap Openldap 2.2.22
Openldap Openldap 2.1.29
Openldap Openldap 2.2.18
Openldap Openldap 2.1.9
Openldap Openldap 1.2.6
Openldap Openldap 1.1.2
Openldap Openldap 2.0.22
Openldap Openldap 2.0.9
Openldap Openldap 2.2.0
Openldap Openldap 2.1.19
Openldap Openldap 1.0
Openldap Openldap 2.2.29 Rev 1.134
Openldap Openldap 1.2.7
Openldap Openldap 2.2.12
Openldap Openldap 2.2.20
Openldap Openldap 2.0.15
NA
CVE-2007-5708
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP prior to 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow malicious users to cause a denial of s...
Openldap Openldap 2.0.2
Openldap Openldap 2.0.11 11
Openldap Openldap 2.1.15
Openldap Openldap 2.1.10
Openldap Openldap 2.3.28 2.20061022
Openldap Openldap 2.2.4
Openldap Openldap 2.2.22
Openldap Openldap 2.1.29
Openldap Openldap 2.2.18
Openldap Openldap 2.1.9
Openldap Openldap 1.2.6
Openldap Openldap 1.1.2
Openldap Openldap 2.0.22
Openldap Openldap 2.0.9
Openldap Openldap 2.2.0
Openldap Openldap 2.1.19
Openldap Openldap 1.0
Openldap Openldap 2.2.29 Rev 1.134
Openldap Openldap 1.2.7
Openldap Openldap 2.2.12
Openldap Openldap 2.2.20
Openldap Openldap 2.0.15
NA
CVE-2006-6493
Buffer overflow in the krbv4_ldap_auth function in servers/slapd/kerberos.c in OpenLDAP 2.4.3 and previous versions, when OpenLDAP is compiled with the --enable-kbind (Kerberos KBIND) option, allows remote malicious users to execute arbitrary code via an LDAP bind request using t...
Openldap Openldap 2.0.2
Openldap Openldap 2.0.11 11
Openldap Openldap 2.1.15
Openldap Openldap 2.1.10
Openldap Openldap 2.2.4
Openldap Openldap 2.2.22
Openldap Openldap 2.1.29
Openldap Openldap 2.2.18
Openldap Openldap 2.1.9
Openldap Openldap 1.2.6
Openldap Openldap 1.1.2
Openldap Openldap 2.0.22
Openldap Openldap 2.0.9
Openldap Openldap 2.2.0
Openldap Openldap 2.1.19
Openldap Openldap 1.0
Openldap Openldap 1.2.7
Openldap Openldap 2.2.12
Openldap Openldap 2.2.20
Openldap Openldap 2.0.15
Openldap Openldap 2.2.13
Openldap Openldap 2.1.30
1 EDB exploit
NA
CVE-2011-4079
Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and previous versions allows remote malicious users to cause a denial of service (slapd crash) via a zero-length string that triggers a heap-based buffer overflow, as demonstrated using an empty postalAddress...
Openldap Openldap 2.0.2
Openldap Openldap 2.0.11 11
Openldap Openldap 2.1.15
Openldap Openldap 2.1.10
Openldap Openldap 2.3.5
Openldap Openldap 2.2.4
Openldap Openldap 2.2.22
Openldap Openldap 2.3.31
Openldap Openldap 2.3.42
Openldap Openldap 2.1.29
Openldap Openldap 2.2.18
Openldap Openldap 2.1.9
Openldap Openldap 1.2.6
Openldap Openldap 1.1.2
Openldap Openldap 2.0.22
Openldap Openldap 2.4.17
Openldap Openldap 2.4.6
Openldap Openldap 2.0.9
Openldap Openldap 2.2.0
Openldap Openldap 2.3.32
Openldap Openldap 2.1.19
Openldap Openldap 1.0
NA
CVE-2009-1417
gnutls-cli in GnuTLS prior to 2.6.6 does not verify the activation and expiration times of X.509 certificates, which allows remote malicious users to successfully present a certificate that is (1) not yet valid or (2) no longer valid, related to lack of time checks in the _gnutls...
Gnu Gnutls 2.3.5
Gnu Gnutls 1.6.0
Gnu Gnutls 2.0.0
Gnu Gnutls 1.5.0
Gnu Gnutls 1.2.8
Gnu Gnutls 1.1.14
Gnu Gnutls 2.3.4
Gnu Gnutls 1.7.3
Gnu Gnutls 1.4.1
Gnu Gnutls 1.4.3
Gnu Gnutls 2.6.1
Gnu Gnutls 1.2.11
Gnu Gnutls 1.1.21
Gnu Gnutls 1.7.5
Gnu Gnutls 1.7.11
Gnu Gnutls 1.0.20
Gnu Gnutls 1.2.5
Gnu Gnutls 2.2.4
Gnu Gnutls 1.0.17
Gnu Gnutls 1.2.4
Gnu Gnutls 1.3.1
Gnu Gnutls 1.0.24
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
IMAP
CVE-2024-36103
CVE-2024-28995
CVE-2024-37325
CVE-2024-30078
CVE-2024-30082
SQL injection
CVE-2024-30052
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started