#VU17876 Out-of-bounds read in ldb - CVE-2019-3824
Published: February 27, 2019
ldb
Samba
Description
The vulnerability allows a remote attacker to gain perform denial of service attack or gain access to sensitive information.
The vulnerability exists due to a boundary condition within the ldb_wildcard_compare() function in ldb_match.c. A remote attacker can send a specially crafted LDAP request to the affected application, trigger out-of-bounds read error and perform denial of service attack or read portions of memory on the system.