Re: OpenLDAP ber_get_next Denial of Service

Posted by Mark Koek on Sep 11

Why are they labelling this ‘minor’ and not issuing a fix?

I could use the oneliner in this advisory to kill the vanilla OpenLDAP
on my Ubuntu box. Remotely.

A remote unauthenticated DoS against a directory server is /not/ minor,
IMHO.

Leave a Reply