A double free vulnerability exists in the ldapsearch function of OpenLDAP. The vulnerability is due to improper handling of ldapsearch queries with a pagesize of 0. A remote attacker can exploit this vulnerability by sending a crafted query to he target OpenLDAP server.
from Check Point Update Services Advisories http://ift.tt/2t9GlEW
No comments:
Post a Comment