CVE-2023-2953

Source
https://cve.org/CVERecord?id=CVE-2023-2953
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-2953.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-2953
Aliases
Downstream
AZL (1)
BELL (1)
CLSA (8)
DEBIAN (1)
ECHO (1)
MGASA (1)
OESA (1)
openSUSE (1)
RHSA (4)
RLSA (1)
ROOT (2)
SUSE (3)
UBUNTU (1)
Related
Published
2023-05-30T00:00:00Z
Modified
2026-09-22T03:45:12Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.

Database specific
{
    "cna_assigner":  "redhat",
    "cwe_ids":  [
        "CWE-476"
    ],
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/2xxx/CVE-2023-2953.json",
    "unresolved_ranges":  [
        {
            "extracted_events":  [
                {
                    "introduced":  "openldap-2.4"
                },
                {
                    "last_affected":  "openldap-2.4"
                }
            ],
            "source":  "AFFECTED_FIELD"
        }
    ]
}
References

Affected packages

Git / github.com/openldap/openldap

Affected ranges

Type
GIT
Repo
https://github.com/openldap/openldap
Events
Database specific
Show details
{
    "cpe":  "cpe:2.3:a:openldap:openldap:2.4:*:*:*:*:*:*:*",
    "extracted_events":  [
        {
            "introduced":  "2.4"
        },
        {
            "last_affected":  "2.4"
        }
    ],
    "source":  "CPE_STRING"
}

Affected versions

2.*
2.4
Other
UCDATA_2_4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-2953.json"