VDB
BIT-openldap-2023-2953
BIT-openldap-2023-2953
PUBLISHED
CVSS 7.5 HIGH
A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.
Risk Scores
CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | openldap | 2.4.0, 2.4.0, 2.4.0 |
Timeline
- Mar 6, 2024 CVE Published
- Apr 3, 2025 CVE Updated
References
- http://seclists.org/fulldisclosure/2023/Jul/47 url
- http://seclists.org/fulldisclosure/2023/Jul/48 url
- http://seclists.org/fulldisclosure/2023/Jul/52 url
- https://access.redhat.com/security/cve/CVE-2023-2953 url
- https://bugs.openldap.org/show_bug.cgi?id=9904 url
- https://security.netapp.com/advisory/ntap-20230703-0005/ url
- https://support.apple.com/kb/HT213843 url
- https://support.apple.com/kb/HT213844 url
- https://support.apple.com/kb/HT213845 url
- https://nvd.nist.gov/vuln/detail/CVE-2023-2953 url