7.5
CVSSv2

CVE-2002-1379

Published: 02/01/2003 Updated: 10/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

OpenLDAP2 (OpenLDAP 2) 2.2.0 and previous versions allows remote or local malicious users to execute arbitrary code when libldap reads the .ldaprc file within applications that are running with extra privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

openldap openldap

Vendor Advisories

The SuSE Security Team reviewed critical parts of openldap2, an implementation of the Lightweight Directory Access Protocol (LDAP) version 2 and 3, and found several buffer overflows and other bugs remote attackers could exploit to gain access on systems running vulnerable LDAP servers In addition to these bugs, various local exploitable bugs with ...