Back

CRITICAL

openldap: modrdn processing uninitialized pointer free

Published Jul 27, 2010

Description

The slap_modrdn2mods function in modrdn.c in OpenLDAP 2.4.22 does not check the return value of a call to the smr_normalize function, which allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a modrdn call with an RDN string containing invalid UTF-8 sequences, which triggers a free of an invalid, uninitialized pointer in the slap_mods_free function, as demonstrated using the Codenomicon LDAPv3 test suite.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (24)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner certcc
Published Jul 27, 2010
Updated Aug 7, 2024
Reserved Jan 6, 2010

CISA Vulnrichment

No data

NVD

Status Modified
Modified Jun 16, 2026

Red Hat

Severity Important
Public date Jul 19, 2010
Bugzilla 605448

ENISA EUVD

Assigner certcc
Published Jul 27, 2010
Updated Aug 7, 2024

GitHub

No data