CVE-2009-1138

Microsoft Windows 2000 SP4 - Remote Code Execution via LDAP Hexadecimal Encoding

Title source: llm
STIX 2.1

Description

The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows remote attackers to execute arbitrary code via a request that uses hexadecimal encoding, whose associated memory is not released, related to a "DN AttributeValue," aka "Active Directory Invalid Free Vulnerability." NOTE: this issue is probably a memory leak.

References (10)

Core 10
Core References
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6180
Patch, Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/1537
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/35226
Third Party Advisory third-party-advisory x_refsource_idefense
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=804
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1022349
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-160A.html
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35355
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/54937

Scores

EPSS 0.3940
EPSS Percentile 98.5%

Details

CWE
CWE-399
Status published
Products (1)
microsoft/windows_2000
Published Jun 10, 2009
Tracked Since Feb 18, 2026