CVE-2007-5708
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.62%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated.
- CVSS 2.0
- 7.1 HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
- EPSS
- 2.62% probability · 85th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- openldap/openldap
- Source
- secalert@redhat.com
References
- http://secunia.com/advisories/27424Patch, Vendor Advisory
- http://secunia.com/advisories/27683Vendor Advisory
- http://secunia.com/advisories/27756Vendor Advisory
- http://secunia.com/advisories/27868Vendor Advisory
- http://secunia.com/advisories/29225Vendor Advisory
- http://secunia.com/advisories/29461Vendor Advisory
- http://secunia.com/advisories/29682Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200803-28.xml
- http://www.debian.org/security/2008/dsa-1541
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:058
- http://www.novell.com/linux/security/advisories/2007_24_sr.html
- http://www.openldap.org/its/index.cgi/Software%20Bugs?id=5163
- http://www.openldap.org/lists/openldap-announce/200710/msg00001.htmlPatch
- http://www.redhat.com/archives/fedora-package-announce/2007-November/msg00460.html
- http://www.securityfocus.com/bid/26245
- http://www.ubuntu.com/usn/usn-551-1
- http://www.vupen.com/english/advisories/2007/3645Vendor Advisory
- http://secunia.com/advisories/27424Patch, Vendor Advisory
- http://secunia.com/advisories/27683Vendor Advisory
- http://secunia.com/advisories/27756Vendor Advisory
- http://secunia.com/advisories/27868Vendor Advisory
- http://secunia.com/advisories/29225Vendor Advisory
- http://secunia.com/advisories/29461Vendor Advisory
- http://secunia.com/advisories/29682Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200803-28.xml
- http://www.debian.org/security/2008/dsa-1541
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:058
- http://www.novell.com/linux/security/advisories/2007_24_sr.html
- http://www.openldap.org/its/index.cgi/Software%20Bugs?id=5163
- http://www.openldap.org/lists/openldap-announce/200710/msg00001.htmlPatch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.