Multiple memory leaks in the LDAP component in Fedora Directory Server 1.0 allow remote malicious users to cause a denial of service (memory consumption) via invalid BER packets that trigger an error, which might prevent memory from being freed if it was allocated during the ber_scanf call, as demonstrated using the ProtoVer LDAP test suite.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat fedora core 1.0 |