CVE-2006-4510

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/10/2006
Last modified:
09/04/2025

Description

The evtFilteredMonitorEventsRequest function in the LDAP service in Novell eDirectory before 8.8.1 FTF1 allows remote attackers to execute arbitrary code via a crafted request containing a value that is larger than the number of objects transmitted, which triggers an invalid free of unallocated memory.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:novell:edirectory:8.8:*:*:*:*:*:*:*
cpe:2.3:a:novell:edirectory:8.8.1:*:*:*:*:*:*:*