Unrated severityNVD Advisory· Published May 12, 2008· Updated Apr 23, 2026
CVE-2008-1677
CVE-2008-1677
Description
Buffer overflow in the regular expression handler in Red Hat Directory Server 8.0 and 7.1 before SP6 allows remote attackers to cause a denial of service (slapd crash) and possibly execute arbitrary code via a crafted LDAP query that triggers the overflow during translation to a regular expression.
Affected products
7cpe:2.3:a:redhat:directory_server:7.1:sp1:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:redhat:directory_server:7.1:sp1:*:*:*:*:*:*
- cpe:2.3:a:redhat:directory_server:7.1:sp2:*:*:*:*:*:*
- cpe:2.3:a:redhat:directory_server:7.1:sp3:*:*:*:*:*:*
- cpe:2.3:a:redhat:directory_server:7.1:sp4:*:*:*:*:*:*
- cpe:2.3:a:redhat:directory_server:7.1:sp5:*:*:*:*:*:*
- cpe:2.3:a:redhat:directory_server:8.0:*:*:*:*:*:*:*
- cpe:2.3:a:redhat:fedora_directory_server:1.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.redhat.com/support/errata/RHSA-2008-0268.htmlnvdThird Party Advisory
- www.redhat.com/support/errata/RHSA-2008-0269.htmlnvdThird Party Advisory
- www.securityfocus.com/bid/29126nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/idnvdThird Party AdvisoryVDB Entry
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/42332nvdThird Party AdvisoryVDB Entry
- secunia.com/advisories/30181nvdBroken Link
- secunia.com/advisories/30185nvdBroken Link
News mentions
0No linked articles in our index yet.