Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
nss-pam-ldapd before 0.7.18 and 0.8.x before 0.8.11 allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code by performing a name lookup on an application with a large number of open file descriptors, which triggers a stack-based buffer overflow related to incorrect use of the FD_SET macro.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
nss-pam-ldapd 缓冲区溢出漏洞
Vulnerability Description
nss-pam-ldapd是用于在unix系统上对LDAP服务器进行身份和身份验证管理的工具。 nss-pam-ldapd 0.7.18和之前版本以及0.8.11版本存在缓冲区错误漏洞,该漏洞源于应用程序复制到不充分大小缓冲区之前没有对用户提供的数据进行正确边界值校验。攻击者利用该漏洞在受影响应用程序上下文中执行任意代码。失败的攻击尝试将导致拒绝服务状态。
CVSS Information
N/A
Vulnerability Type
N/A