Product: Sun Java System Directory Server 5.2, Sun Java System Directory Server Enterprise Edition, Sun ONE Directory Server 5.1

A local or remote unprivileged user may be able to cause the Sun Java System Directory Server to crash. This is a Denial of Service (DoS) due to a "Ber decoding" issue in the LDAP Software Development Kit (SDK) for C.

Avoidance: Patch, Upgrade
State: Resolved
First released: 01-May-2007
Permalink | Comments [1]

Trackback URL: http://blogs.sun.com/security/entry/sun_alert_102895_security_vulnerability
Comments:

Where is the info on the actual exploit? Since RedHat/Fedora/Mozilla use the same SDK, is a similar patch relevant for them? It would be nice to be able to test our own code to see if the same vulnerability exists there.

Posted by Howard Chu on May 08, 2007 at 01:00 PM PDT #

Post a Comment:

Name:
E-Mail:
URL:

Your Comment:

HTML Syntax: NOT allowed