4
CVSSv2

CVE-2021-3514

Published: 28/05/2021 Updated: 24/04/2023
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

When using a sync_repl client in 389-ds-base, an authenticated attacker can cause a NULL pointer dereference using a specially crafted query, causing a crash.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat 389 directory server -

Vendor Advisories

Synopsis Moderate: redhat-ds:113 security and bug fix update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for the redhat-ds:11 module is now available for Red Hat Directory Server 113 for RHEL 8Red Hat Prod ...
Debian Bug report logs - #1018054 389-ds-base: CVE-2022-2850: Sync_repl may crash while managing invalid cookie Package: src:389-ds-base; Maintainer for src:389-ds-base is Debian FreeIPA Team <pkg-freeipa-devel@alioth-listsdebiannet>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 24 Aug 2022 19:42 ...
Debian Bug report logs - #988727 389-ds-base: CVE-2021-3514 Package: 389-ds-base; Maintainer for 389-ds-base is Debian FreeIPA Team <pkg-freeipa-devel@alioth-listsdebiannet>; Source for 389-ds-base is src:389-ds-base (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Tue, 18 May 2021 18:33 ...
Debian Bug report logs - #988736 slapi-nis: CVE-2021-3480 Package: src:slapi-nis; Maintainer for src:slapi-nis is Debian FreeIPA Team <pkg-freeipa-devel@alioth-listsdebiannet>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Tue, 18 May 2021 18:33:05 UTC Severity: grave Tags: security Found in version slapi ...
A security issue was found in 389-ds-base When using a sync_repl client, an authenticated attacker can cause a NULL pointer dereference using a specially crafted query, causing a crash of 389-ds-base ...