CVE-2011-1024

Source
https://nvd.nist.gov/vuln/detail/CVE-2011-1024
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2011-1024.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2011-1024
Downstream
Published
2011-03-20T02:00:03Z
Modified
2025-08-09T19:01:28Z
Summary
[none]
Details

chain.c in back-ldap in OpenLDAP 2.4.x before 2.4.24, when a master-slave configuration with a chain overlay and ppolicyforwardupdates (aka authentication-failure forwarding) is used, allows remote authenticated users to bypass external-program authentication by sending an invalid password to a slave server.

References

Affected packages