Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
nss_ldap 181 to versions before 213, as used in Mandrake Corporate Server and Mandrake 10.0, and other operating systems, does not properly handle a SIGPIPE signal when sending a search request to an LDAP directory server, which might allow remote attackers to cause a denial of service (crond and other application crash) if they can cause an LDAP server to become unavailable. NOTE: it is not clear whether this attack scenario is sufficient to include this item in CVE.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
nss_ldap SIGPIPE 拒绝服务漏洞
Vulnerability Description
nss_ldap模块可在AIX、Linux、Solaris等操作系统上提供LDAP名称服务交换服务。 Mandrake Corporate Server和Mandrake 10.0以及其他操作系统使用的nss_ldap 181至213版本,存在拒绝服务漏洞。 在向LDAP目录服务器发送搜索请求时,由于未能正确处理SIGPIPE信号,远程攻击者可以使LDAP服务器变为不可用,导致系统拒绝服务(crond和其他应用程序崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A