CVE-2001-0974
https://notcve.org/view.php?id=CVE-2001-0974
Format string vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. • http://www.cert.org/advisories/CA-2001-18.html http://www.ciac.org/ciac/bulletins/l-116.shtml http://www.kb.cert.org/vuls/id/869184 http://www.securityfocus.com/bid/3048 https://exchange.xforce.ibmcloud.com/vulnerabilities/6903 •
CVE-2001-1321
https://notcve.org/view.php?id=CVE-2001-1321
Oracle Internet Directory Server 2.1.1.x and 3.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid encodings of BER OBJECT-IDENTIFIER values, as demonstrated by the PROTOS LDAPv3 test suite. • http://ciac.llnl.gov/ciac/bulletins/l-116.shtml http://www.cert.org/advisories/CA-2001-18.html http://www.ee.oulu.fi/research/ouspg/protos/testing/c06/ldapv3 http://www.kb.cert.org/vuls/id/869184 http://www.kb.cert.org/vuls/id/JPLA-4WESNV •
CVE-2001-0975
https://notcve.org/view.php?id=CVE-2001-0975
Buffer overflow vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. • http://otn.oracle.com/deploy/security/pdf/oid_cert_bof.pdf http://www.cert.org/advisories/CA-2001-18.html http://www.ciac.org/ciac/bulletins/l-116.shtml http://www.kb.cert.org/vuls/id/869184 http://www.securityfocus.com/bid/3047 https://exchange.xforce.ibmcloud.com/vulnerabilities/6902 •
CVE-2001-0300
https://notcve.org/view.php?id=CVE-2001-0300
oidldapd 2.1.1.1 in Oracle 8.1.7 records log files in a directory (ldaplog) that has world-writable permissions, which may allow local users to delete logs and/or overwrite other files via a symlink attack. • http://archives.neohapsis.com/archives/bugtraq/2000-12/0434.html http://www.kb.cert.org/vuls/id/610904 https://exchange.xforce.ibmcloud.com/vulnerabilities/5804 •