Denial of Service Vulnerability in IBM Tivoli Directory Server
CVE-2008-7289

Currently unrated

Key Information:

Vendor

IBM

Vendor
CVE Published:
21 April 2011

What is CVE-2008-7289?

IBM Tivoli Directory Server (TDS) version 5.2 prior to 5.2.0.5-TIV-ITDS-LA0007 has a vulnerability that arises from its handling of simultaneous password changes. This flaw allows remote authenticated users to trigger a denial of service situation by executing multiple password modifications that affect updates to the DB2 password-history table, potentially leading to a DB2 daemon deadlock.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.