389-ds-base是一个高度可用、功能齐全、可靠且安全的 LDAP 服务器实现。它处理世界上许多最大的 LDAP 部署。 389-ds-base ldap server存在输入验证错误漏洞,该漏洞源于允许经过身份验证的攻击者在使用格式错误的输入修改 userPassword 时导致服务器崩溃。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| None | None | < 3.1.1 |
affected |
| Red Hat | Red Hat Directory Server 11.5 E4S for RHEL 8 | 8060020250210084424.0ca98e7e< * |
unaffected |
| Red Hat | Red Hat Directory Server 11.8 for RHEL 8 | 8090020240606122459.91529cd0< * |
unaffected |
| Red Hat | Red Hat Directory Server 11.9 for RHEL 8 | 8100020240604161237.37ed7c03< * |
unaffected |
| Red Hat | Red Hat Directory Server 12.4 for RHEL 9 | 9040020240604143706.1674d574< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 6 | any |
unknown |
| Red Hat | Red Hat Enterprise Linux 7 | 0:1.3.11.1-5.el7_9< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8 | 8100020240613122040.25e700aa< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 8.8 Extended Update Support | 8080020240807050952.6dbb3803< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 9 | 0:2.4.5-8.el9_4< * |
unaffected |
| Red Hat | Red Hat Enterprise Linux 9.2 Extended Update Support | 0:2.2.4-9.el9_2< * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | - | 0 ~ 3.1.1 | - |
|
| Red Hat | Red Hat Directory Server 11.5 E4S for RHEL 8 | 8060020250210084424.0ca98e7e ~ * |
cpe:/a:redhat:directory_server_e4s:11.5::el8
|
|
| Red Hat | Red Hat Directory Server 11.8 for RHEL 8 | 8090020240606122459.91529cd0 ~ * |
cpe:/a:redhat:directory_server:11.8::el8
|
|
| Red Hat | Red Hat Directory Server 11.9 for RHEL 8 | 8100020240604161237.37ed7c03 ~ * |
cpe:/a:redhat:directory_server:11.9::el8
|
|
| Red Hat | Red Hat Directory Server 12.4 for RHEL 9 | 9040020240604143706.1674d574 ~ * |
cpe:/a:redhat:directory_server:12.4::el9
|
|
| Red Hat | Red Hat Enterprise Linux 7 | 0:1.3.11.1-5.el7_9 ~ * |
cpe:/o:redhat:enterprise_linux:7::client
|
|
| Red Hat | Red Hat Enterprise Linux 8 | 8100020240613122040.25e700aa ~ * |
cpe:/a:redhat:enterprise_linux:8::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.8 Extended Update Support | 8080020240807050952.6dbb3803 ~ * |
cpe:/a:redhat:rhel_eus:8.8::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9 | 0:2.4.5-8.el9_4 ~ * |
cpe:/a:redhat:enterprise_linux:9::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9.2 Extended Update Support | 0:2.2.4-9.el9_2 ~ * |
cpe:/a:redhat:rhel_eus:9.2::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet