Denial of Service Vulnerability in Sun Java System Directory Server
CVE-2009-4443

Currently unrated

Key Information:

Vendor
Oracle
Vendor
CVE Published:
28 December 2009

Summary

A vulnerability exists in the persistent search functionality of Sun Java System Directory Server Enterprise Edition versions 6.0 to 6.3.1. This allows remote attackers to induce a denial of service by sending specially crafted requests through a psearch client. The flawed implementation can cause a psearch thread to enter a loop, leading to service outages.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.