Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.57656
Category:SuSE Local Security Checks
Title:SuSE Security Advisory SUSE-SA:2006:072 (openldap2-client)
Summary:NOSUMMARY
Description:Description:

The remote host is missing updates announced in
advisory SUSE-SA:2006:072.

OpenLDAP libldap's strval2strlen() function contained a bug when
processing the authcid string of certain Bind Requests, which could
allow attackers to cause an affected application (especially the
OpenLDAP Server) to crash.

This is tracked by the Mitre CVE ID CVE-2006-5779.

Solution:
Update your system with the packages as indicated in
the referenced security advisory.

http://www.securityspace.com/smysecure/catid.html?in=SUSE-SA:2006:072

Risk factor : Medium

CVSS Score:
5.0

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2006-5779
BugTraq ID: 20939
http://www.securityfocus.com/bid/20939
Bugtraq: 20061106 VulnDisco Pack for Metasploit (Google Search)
http://www.securityfocus.com/archive/1/450728/100/0/threaded
http://security.gentoo.org/glsa/glsa-200611-25.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2006:208
http://gleg.net/downloads/VULNDISCO_META_FREE.tar.gz
http://gleg.net/vulndisco_meta.shtml
http://www.openpkg.org/security/advisories/OpenPKG-SA-2006.033-openldap.html
http://securitytracker.com/id?1017166
http://secunia.com/advisories/22750
http://secunia.com/advisories/22953
http://secunia.com/advisories/22996
http://secunia.com/advisories/23125
http://secunia.com/advisories/23133
http://secunia.com/advisories/23152
http://secunia.com/advisories/23170
http://securityreason.com/securityalert/1831
SuSE Security Announcement: SUSE-SA:2006:072 (Google Search)
http://www.novell.com/linux/security/advisories/2006_72_openldap2.html
http://www.trustix.org/errata/2006/0066/
http://www.ubuntu.com/usn/usn-384-1
http://www.vupen.com/english/advisories/2006/4379
XForce ISS Database: openldap-bind-dos(30076)
https://exchange.xforce.ibmcloud.com/vulnerabilities/30076
CopyrightCopyright (c) 2006 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.