VMware vCenter Server (6.5 prior to 6.5 U1 and 6.0 prior to 6.0 U3c) does not correctly handle specially crafted LDAP network packets which may allow for remote denial of service.
References
Link | Resource |
---|---|
https://www.vmware.com/security/advisories/VMSA-2017-0017.html | Vendor Advisory |
http://www.securitytracker.com/id/1039759 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/101786 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-11-17 06:29
Updated : 2017-12-04 08:30
NVD link : CVE-2017-4927
Mitre link : CVE-2017-4927
JSON object : View
CWE
CWE-90
Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
Products Affected
vmware
- vcenter_server