// For flags

CVE-2014-0132

389-ds: flaw in parsing authzid can lead to privilege escalation

Severity Score

9.8
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to connect as an arbitrary user and gain privileges via the authzid parameter in a SASL/GSSAPI bind.

La funcionalidad de autenticación SASL en 389 Directory Server anterior a 1.2.11.26 permite a usuarios remotos autenticados conectar como un usuario arbitrario y ganar privilegios a través del parámetro authzid en un SASL/GSSAPI bind.

The 389 Directory Server is an LDAPv3 compliant server. The base packages include the Lightweight Directory Access Protocol server and command-line utilities for server administration. It was discovered that the 389 Directory Server did not properly handle certain SASL-based authentication mechanisms. A user able to authenticate to the directory using these SASL mechanisms could connect as any other directory user, including the administrative Directory Manager account. This could allow them to modify configuration values, as well as read and write any data the directory holds.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2013-12-03 CVE Reserved
  • 2014-03-14 CVE Published
  • 2024-08-06 CVE Updated
  • 2024-08-06 First Exploit
  • 2025-03-30 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-287: Improper Authentication
  • CWE-290: Authentication Bypass by Spoofing
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
<= 1.2.11.25
Search vendor "Fedoraproject" for product "389 Directory Server" and version " <= 1.2.11.25"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.1
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.1"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.5
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.5"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.6
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.6"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.8
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.8"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.9
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.9"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.10
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.10"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.11
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.11"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.12
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.12"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.13
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.13"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.14
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.14"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.15
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.15"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.17
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.17"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.19
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.19"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.20
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.20"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.21
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.21"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.22
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.22"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
389 Directory Server
Search vendor "Fedoraproject" for product "389 Directory Server"
1.2.11.23
Search vendor "Fedoraproject" for product "389 Directory Server" and version "1.2.11.23"
-
Affected