Page 5 of 22 results (0.006 seconds)

CVSS: 5.0EPSS: 3%CPEs: 3EXPL: 0

IBM Tivoli Directory Server (TDS) 6.0.0.x before 6.0.0.8-TIV-ITDS-IF0007 does not properly handle invalid buffer references in LDAP BER requests, which might allow remote attackers to cause a denial of service (daemon crash) via vectors involving a buffer that has a memory address near the maximum possible address. IBM Tivoli Directory Server (TDS) v6.0.0.x anterior a v6.0.0.8-TIV-ITDS-IF0007 no maneja adecuadamente las referencias inválidas de búfer en peticiones LDAP BER, lo que podría permitir a atacantes remotos provocar una denegación de servicio (caída del demonio) a través de vectores involucrados con un búfer que tiene una dirección de memoria próxima a la dirección máxima psible. • http://secunia.com/advisories/42116 http://www.ibm.com/support/docview.wss?uid=swg1IO13306 http://www.securityfocus.com/bid/44604 http://www.vupen.com/english/advisories/2010/2863 https://exchange.xforce.ibmcloud.com/vulnerabilities/62977 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 5.0EPSS: 4%CPEs: 3EXPL: 0

The slapi_printmessage function in IBM Tivoli Directory Server (ITDS) before 6.0.0.8-TIV-ITDS-IF0006 allows remote attackers to cause a denial of service (daemon crash) via multiple incomplete DIGEST-MD5 connection attempts. La función slapi_printmessage en IBM Tivoli Directory Server (ITDS) en versiones anteriores a la 6.0.0.8-TIV-ITDS-IF0006, permite a atacantes remotos provocar una denegación de servicio (caída del demonio) mediante múltiples intentos de conexión DIGEST-MD5 incompletos. • http://osvdb.org/66782 http://secunia.com/advisories/40791 http://www-01.ibm.com/support/docview.wss?uid=swg1IO12399 http://www-01.ibm.com/support/docview.wss?uid=swg24027463 http://www.securityfocus.com/bid/42093 https://exchange.xforce.ibmcloud.com/vulnerabilities/60821 • CWE-287: Improper Authentication •