CVE-2009-1138
Microsoft Windows 2000 SP4 - Remote Code Execution via LDAP Hexadecimal Encoding
Title source: llmDescription
The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows remote attackers to execute arbitrary code via a request that uses hexadecimal encoding, whose associated memory is not released, related to a "DN AttributeValue," aka "Active Directory Invalid Free Vulnerability." NOTE: this issue is probably a memory leak.
References (10)
Core 10
Core References
Third Party Advisory, VDB Entry vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6180
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-018
Patch, Vendor Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2009/1537
Patch vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/35226
Third Party Advisory third-party-advisory
x_refsource_idefense
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=804
Vendor Advisory x_refsource_confirm
http://support.avaya.com/elmodocs2/security/ASA-2009-214.htm
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1022349
US Government Resource third-party-advisory
x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-160A.html
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/35355
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://osvdb.org/54937
Scores
EPSS
0.3940
EPSS Percentile
98.5%
Details
CWE
CWE-399
Status
published
Products (1)
microsoft/windows_2000
Published
Jun 10, 2009
Tracked Since
Feb 18, 2026