Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
openldap openldap 2.4.40 vulnerabilities and exploits
(subscribe to this query)
505
VMScore
CVE-2015-6908
The ber_get_next function in libraries/liblber/io.c in OpenLDAP 2.4.42 and previous versions allows remote malicious users to cause a denial of service (reachable assertion and application crash) via crafted BER data, as demonstrated by an attack against slapd.
Openldap Openldap
Apple Mac Os X
1 EDB exploit
356
VMScore
CVE-2014-9713
The default slapd configuration in the Debian openldap package 2.4.23-3 up to and including 2.4.39-1.1 allows remote authenticated users to modify the user's permissions and other user attributes via unspecified vectors.
Openldap Openldap 2.4.23
Openldap Openldap 2.4.30
Openldap Openldap 2.4.24
Openldap Openldap 2.4.25
Openldap Openldap 2.4.32
Openldap Openldap 2.4.33
Openldap Openldap 2.4.26
Openldap Openldap 2.4.27
Openldap Openldap 2.4.34
Openldap Openldap 2.4.35
Openldap Openldap 2.4.31
Openldap Openldap 2.4.39
Openldap Openldap 2.4.28
Openldap Openldap 2.4.29
Openldap Openldap 2.4.36
Openldap Openldap 2.4.37
Openldap Openldap 2.4.38
Debian Debian Linux 7.0
445
VMScore
CVE-2015-1545
The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 up to and including 2.4.40 allows remote malicious users to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.
Openldap Openldap 2.4.39
Openldap Openldap 2.4.17
Openldap Openldap 2.4.37
Openldap Openldap 2.4.26
Openldap Openldap 2.4.31
Openldap Openldap 2.4.40
Openldap Openldap 2.4.16
Openldap Openldap 2.4.29
Openldap Openldap 2.4.32
Openldap Openldap 2.4.22
Openldap Openldap 2.4.25
Openldap Openldap 2.4.20
Openldap Openldap 2.4.15
Openldap Openldap 2.4.18
Openldap Openldap 2.4.27
Openldap Openldap 2.4.36
Openldap Openldap 2.4.38
Openldap Openldap 2.4.28
Openldap Openldap 2.4.23
Openldap Openldap 2.4.24
Openldap Openldap 2.4.34
Openldap Openldap 2.4.14
445
VMScore
CVE-2015-1546
Double free vulnerability in the get_vrFilter function in servers/slapd/filter.c in OpenLDAP 2.4.40 allows remote malicious users to cause a denial of service (crash) via a crafted search query with a matched values control.
Openldap Openldap 2.4.40
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Apple Mac Os X 10.10.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started