Description
The LDAP server (ns-slapd) in Sun Java System Directory Server 5.2 Patch4 and earlier and ONE Directory Server 5.1 and 5.2 allows remote attackers to cause a denial of service (crash) via malformed queries, probably malformed BER queries, which trigger a free of uninitialized memory locations.
References (8)
Scores
EPSS
0.0184
EPSS Percentile
83.0%
Details
CWE
CWE-824
Status
published
Products (3)
sun/java_system_directory_server
5.2
sun/one_directory_server
5.1
sun/one_directory_server
5.2
Published
Mar 26, 2007
Tracked Since
Feb 18, 2026