Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2018.0245
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2018-0245)
Summary:The remote host is missing an update for the '389-ds-base' package(s) announced via the MGASA-2018-0245 advisory.
Description:Summary:
The remote host is missing an update for the '389-ds-base' package(s) announced via the MGASA-2018-0245 advisory.

Vulnerability Insight:
389-ds-base did not properly handle characters needed to be escaped in
its query filter. This could result in buffer overflows, from the heap
or the stack, on larger filters. An unauthenticated attacker could send
a specially crafted LDAP request and crash the server (CVE-2018-1089).

Affected Software/OS:
'389-ds-base' package(s) on Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2018-1089
BugTraq ID: 104137
http://www.securityfocus.com/bid/104137
https://lists.debian.org/debian-lts-announce/2018/07/msg00018.html
RedHat Security Advisories: RHSA-2018:1364
https://access.redhat.com/errata/RHSA-2018:1364
RedHat Security Advisories: RHSA-2018:1380
https://access.redhat.com/errata/RHSA-2018:1380
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.