CVE-2020-36222 - log back

CVE-2020-36222 edited at 25 Jan 2021 12:22:12
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Denial of service
Description
+ A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, resulting in denial of service.
References
+ https://bugs.openldap.org/show_bug.cgi?id=9406
+ https://bugs.openldap.org/show_bug.cgi?id=9407
+ https://git.openldap.org/openldap/openldap/-/commit/6ed057b5b728b50746c869bcc9c1f85d0bbbf6ed
+ https://git.openldap.org/openldap/openldap/-/commit/02dfc32d658fadc25e4040f78e36592f6e1e1ca0
Notes
CVE-2020-36222 created at 25 Jan 2021 12:17:08