The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 through 2.4.40 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2015-02-12 08:59
Updated : 2017-09-07 18:29
NVD link : CVE-2015-1545
Mitre link : CVE-2015-1545
JSON object : View
CWE
Products Affected
openldap
- openldap