Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.801824
Category:Denial of Service
Title:IBM Tivoli Directory Proxy Server Denial of Service Vulnerability
Summary:IBM Tivoli Directory Server is prone to a denial of service (DoS) vulnerability.
Description:Summary:
IBM Tivoli Directory Server is prone to a denial of service (DoS) vulnerability.

Vulnerability Insight:
The flaw is caused by an error in the Proxy server when constructing LDAP
search requests, which could allow remote attackers to crash an affected
server by sending an unbind operation during a page results search.

Vulnerability Impact:
Successful exploitation will allow attacker to crash an affected server,
creating a denial of service condition.

Affected Software/OS:
IBM Tivoli Directory Server (TDS) 6.0.0.x before 6.0.0.8-TIV-ITDS-IF0007
and 6.1.x before 6.1.0-TIV-ITDS-FP0005.

Solution:
Apply interim fix 6.0.0.8-TIV-ITDS-IF0007 or 6.1.0-TIV-ITDS-FP0005.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2010-4217
AIX APAR: IO13282
http://www-01.ibm.com/support/docview.wss?uid=swg1IO13282
AIX APAR: IO13364
http://www-01.ibm.com/support/docview.wss?uid=swg1IO13364
BugTraq ID: 44604
http://www.securityfocus.com/bid/44604
http://www.osvdb.org/68964
http://securitytracker.com/id?1024670
http://secunia.com/advisories/42083
http://www.vupen.com/english/advisories/2010/2861
http://www.vupen.com/english/advisories/2010/2863
CopyrightCopyright (C) 2011 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.