CVE Database
/

CVE-2001-1321

Back to search

CVE-2001-1321

Published: May 3, 2002

Modified: Aug 8, 2024

PUBLISHED

Description

Oracle Internet Directory Server 2.1.1.x and 3.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid encodings of BER OBJECT-IDENTIFIER values, as demonstrated by the PROTOS LDAPv3 test suite.

VendorProductVersions

n/a

n/a

affected
n/a

References

CA-2001-18
third-party-advisory
x_refsource_CERT
L-116
third-party-advisory
government-resource
x_refsource_CIAC
VU#869184
third-party-advisory
x_refsource_CERT-VN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now