Total vulnerabilities in the database
389 Directory Server before 1.3.2.27 and 1.3.3.x before 1.3.3.9 does not properly restrict access to the "cn=changelog" LDAP sub-tree, which allows remote attackers to obtain sensitive information from the changelog via unspecified vectors.
Software | From | Fixed in |
---|---|---|
fedoraproject / 389_directory_server | - | 1.3.2.26.x |
fedoraproject / 389_directory_server | 1.3.3.0 | 1.3.3.0.x |
fedoraproject / 389_directory_server | 1.3.3.5 | 1.3.3.5.x |
fedoraproject / 389_directory_server | 1.3.3.2 | 1.3.3.2.x |
fedoraproject / 389_directory_server | 1.3.3.3 | 1.3.3.3.x |
fedoraproject / 389_directory_server | 1.3.3.8 | 1.3.3.8.x |
fedoraproject / fedora | 22 | 22.x |