OpenLDAP Lightning Memory-Mapped Database (LMDB) mdb_load contains a heap buffer underflow vulnerability in the readline() function. When processing malformed input, an unsigned offset calculation can underflow a heap pointer, resulting in an out-of-bounds read of one byte before the allocated heap buffer. This may allow a local attacker to cause a denial of service and potentially disclose limited heap memory contents.
{
"binaries": [
{
"binary_version": "2.4.49+dfsg-2ubuntu1.10",
"binary_name": "ldap-utils"
},
{
"binary_version": "2.4.49+dfsg-2ubuntu1.10",
"binary_name": "libldap-2.4-2"
},
{
"binary_version": "2.4.49+dfsg-2ubuntu1.10",
"binary_name": "libldap-common"
},
{
"binary_version": "2.4.49+dfsg-2ubuntu1.10",
"binary_name": "libldap2-dev"
},
{
"binary_version": "2.4.49+dfsg-2ubuntu1.10",
"binary_name": "slapd"
},
{
"binary_version": "2.4.49+dfsg-2ubuntu1.10",
"binary_name": "slapd-contrib"
},
{
"binary_version": "2.4.49+dfsg-2ubuntu1.10",
"binary_name": "slapd-smbk5pwd"
},
{
"binary_version": "2.4.49+dfsg-2ubuntu1.10",
"binary_name": "slapi-dev"
}
]
}{
"binaries": [
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "ldap-utils"
},
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "libldap-2.5-0"
},
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "libldap-common"
},
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "libldap-dev"
},
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "libldap2-dev"
},
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "slapd"
},
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "slapd-contrib"
},
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "slapd-smbk5pwd"
},
{
"binary_version": "2.5.19+dfsg-0ubuntu0.22.04.1",
"binary_name": "slapi-dev"
}
]
}{
"binaries": [
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "ldap-utils"
},
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "libldap-common"
},
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "libldap-dev"
},
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "libldap2"
},
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "libldap2-dev"
},
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "slapd"
},
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "slapd-contrib"
},
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "slapd-smbk5pwd"
},
{
"binary_version": "2.6.7+dfsg-1~exp1ubuntu8.2",
"binary_name": "slapi-dev"
}
]
}{
"binaries": [
{
"binary_version": "2.6.9+dfsg-2ubuntu1",
"binary_name": "ldap-utils"
},
{
"binary_version": "2.6.9+dfsg-2ubuntu1",
"binary_name": "libldap-common"
},
{
"binary_version": "2.6.9+dfsg-2ubuntu1",
"binary_name": "libldap-dev"
},
{
"binary_version": "2.6.9+dfsg-2ubuntu1",
"binary_name": "libldap2"
},
{
"binary_version": "2.6.9+dfsg-2ubuntu1",
"binary_name": "libldap2-dev"
},
{
"binary_version": "2.6.9+dfsg-2ubuntu1",
"binary_name": "slapd"
},
{
"binary_version": "2.6.9+dfsg-2ubuntu1",
"binary_name": "slapd-contrib"
},
{
"binary_version": "2.6.9+dfsg-2ubuntu1",
"binary_name": "slapi-dev"
}
]
}{
"binaries": [
{
"binary_version": "2.6.10+dfsg-1ubuntu2",
"binary_name": "ldap-utils"
},
{
"binary_version": "2.6.10+dfsg-1ubuntu2",
"binary_name": "libldap-common"
},
{
"binary_version": "2.6.10+dfsg-1ubuntu2",
"binary_name": "libldap-dev"
},
{
"binary_version": "2.6.10+dfsg-1ubuntu2",
"binary_name": "libldap2"
},
{
"binary_version": "2.6.10+dfsg-1ubuntu2",
"binary_name": "libldap2-dev"
},
{
"binary_version": "2.6.10+dfsg-1ubuntu2",
"binary_name": "slapd"
},
{
"binary_version": "2.6.10+dfsg-1ubuntu2",
"binary_name": "slapd-contrib"
},
{
"binary_version": "2.6.10+dfsg-1ubuntu2",
"binary_name": "slapi-dev"
}
]
}{
"binaries": [
{
"binary_version": "2.4.31-1+nmu2ubuntu8.5+esm8",
"binary_name": "ldap-utils"
},
{
"binary_version": "2.4.31-1+nmu2ubuntu8.5+esm8",
"binary_name": "libldap-2.4-2"
},
{
"binary_version": "2.4.31-1+nmu2ubuntu8.5+esm8",
"binary_name": "libldap2-dev"
},
{
"binary_version": "2.4.31-1+nmu2ubuntu8.5+esm8",
"binary_name": "slapd"
},
{
"binary_version": "2.4.31-1+nmu2ubuntu8.5+esm8",
"binary_name": "slapd-smbk5pwd"
}
]
}{
"binaries": [
{
"binary_version": "2.4.42+dfsg-2ubuntu3.13+esm2",
"binary_name": "ldap-utils"
},
{
"binary_version": "2.4.42+dfsg-2ubuntu3.13+esm2",
"binary_name": "libldap-2.4-2"
},
{
"binary_version": "2.4.42+dfsg-2ubuntu3.13+esm2",
"binary_name": "libldap2-dev"
},
{
"binary_version": "2.4.42+dfsg-2ubuntu3.13+esm2",
"binary_name": "slapd"
},
{
"binary_version": "2.4.42+dfsg-2ubuntu3.13+esm2",
"binary_name": "slapd-smbk5pwd"
}
]
}{
"binaries": [
{
"binary_version": "2.4.45+dfsg-1ubuntu1.11+esm1",
"binary_name": "ldap-utils"
},
{
"binary_version": "2.4.45+dfsg-1ubuntu1.11+esm1",
"binary_name": "libldap-2.4-2"
},
{
"binary_version": "2.4.45+dfsg-1ubuntu1.11+esm1",
"binary_name": "libldap-common"
},
{
"binary_version": "2.4.45+dfsg-1ubuntu1.11+esm1",
"binary_name": "libldap2-dev"
},
{
"binary_version": "2.4.45+dfsg-1ubuntu1.11+esm1",
"binary_name": "slapd"
},
{
"binary_version": "2.4.45+dfsg-1ubuntu1.11+esm1",
"binary_name": "slapd-smbk5pwd"
}
]
}