VYPR
Unrated severityNVD Advisory· Published Jan 2, 2003· Updated Jun 16, 2026

CVE-2002-1378

CVE-2002-1378

Description

Multiple buffer overflows in OpenLDAP2 (OpenLDAP 2) 2.2.0 and earlier allow remote attackers to execute arbitrary code via (1) long -t or -r parameters to slurpd, (2) a malicious ldapfilter.conf file that is not properly handled by getfilter functions, (3) a malicious ldaptemplates.conf that causes an overflow in libldap, (4) a certain access control list that causes an overflow in slapd, or (5) a long generated filename for logging rejected replication requests.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • OpenLDAP/Openldap2 versions
    cpe:2.3:a:openldap:openldap:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:openldap:openldap:*:*:*:*:*:*:*:*range: <=2.2.0
    • (no CPE)range: <=2.2.0

Patches

Vulnerability mechanics

References

11

News mentions

0

No linked articles in our index yet.