MGASA-2013-0357

Source
https://advisories.mageia.org/MGASA-2013-0357.html
Import Source
https://advisories.mageia.org/MGASA-2013-0357.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2013-0357
Related
Published
2013-11-30T21:31:52Z
Modified
2013-11-30T21:31:42Z
Summary
Updated 389-ds-base package fixes CVE-2013-4485
Details

Updated 389-ds-base packages fix security vulnerability:

It was discovered that the 389 Directory Server did not properly handle certain Get Effective Rights (GER) search queries when the attribute list, which is a part of the query, included several names using the '@' character. An attacker able to submit search queries to the 389 Directory Server could cause it to crash (CVE-2013-4485).

References
Credits

Affected packages

Mageia:3 / 389-ds-base

Package

Name
389-ds-base
Purl
pkg:rpm/mageia/389-ds-base?distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.0.9-1.mga3

Ecosystem specific

{
    "section": "core"
}