DEBIAN-CVE-2020-36230

Source
https://security-tracker.debian.org/tracker/CVE-2020-36230
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2020-36230.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2020-36230
Upstream
Published
2021-01-26T18:15:57Z
Modified
2025-09-30T03:54:24Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c bernextelement, resulting in denial of service.

References

Affected packages

Debian:11 / openldap

Package

Name
openldap
Purl
pkg:deb/debian/openldap?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.4.57+dfsg-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / openldap

Package

Name
openldap
Purl
pkg:deb/debian/openldap?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.4.57+dfsg-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / openldap

Package

Name
openldap
Purl
pkg:deb/debian/openldap?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.4.57+dfsg-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14 / openldap

Package

Name
openldap
Purl
pkg:deb/debian/openldap?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.4.57+dfsg-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}