CVE-2009-1138
The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows remote attackers to execute arbitrary code via a request that uses hexadecimal encoding, whose associated memory…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 39.4%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows remote attackers to execute arbitrary code via a request that uses hexadecimal encoding, whose associated memory is not released, related to a "DN AttributeValue," aka "Active Directory Invalid Free Vulnerability." NOTE: this issue is probably a memory leak.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 39.40% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- microsoft/windows 2000
- Source
- secure@microsoft.com
References
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=804
- http://osvdb.org/54937
- http://secunia.com/advisories/35355Vendor Advisory
- http://support.avaya.com/elmodocs2/security/ASA-2009-214.htm
- http://www.securityfocus.com/bid/35226Patch
- http://www.securitytracker.com/id?1022349
- http://www.us-cert.gov/cas/techalerts/TA09-160A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2009/1537Patch, Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-018
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6180
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=804
- http://osvdb.org/54937
- http://secunia.com/advisories/35355Vendor Advisory
- http://support.avaya.com/elmodocs2/security/ASA-2009-214.htm
- http://www.securityfocus.com/bid/35226Patch
- http://www.securitytracker.com/id?1022349
- http://www.us-cert.gov/cas/techalerts/TA09-160A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2009/1537Patch, Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-018
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6180
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.