CVE-2018-10935

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
11/09/2018
Last modified:
09/10/2019

Description

A flaw was found in the 389 Directory Server that allows users to cause a crash in the LDAP server using ldapsearch with server side sort.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:redhat:389_directory_server:*:*:*:*:*:*:*:* 1.3.0.0 (including) 1.3.8.7 (excluding)
cpe:2.3:o:redhat:389_directory_server:*:*:*:*:*:*:*:* 1.4.0.0 (including) 1.4.0.14 (excluding)