Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2020-12243

Published: August 31, 2023Last modified: August 31, 2023

Description

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).

Severity score breakdown

ParameterValue
Base score7.5
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredNONE
User interactionNONE
ScopeUNCHANGED
ConfidentialityNONE
Integrity impactNONE
Availability impactHIGH
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSopenldapNot affected (2.6.3-r6)
StreamopenldapNot affected (2.6.6-r0)

References

ON THIS PAGE