CVE-2007-5708
Publication date 30 October 2007
Last updated 24 July 2024
Ubuntu priority
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated.
Status
Package | Ubuntu Release | Status |
---|---|---|
openldap2 | ||
openldap2.2 | ||
openldap2.3 | ||
Notes
jdstrand
initial inspection show this to be a reliability fix openldap2 source package does not ship slapd