CVE-2017-4927

VMware vCenter Server (6.5 prior to 6.5 U1 and 6.0 prior to 6.0 U3c) does not correctly handle specially crafted LDAP network packets which may allow for remote denial of service.
References
Link Resource
http://www.securityfocus.com/bid/101786 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039759 Third Party Advisory VDB Entry
https://www.vmware.com/security/advisories/VMSA-2017-0017.html Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:vmware:vcenter_server:*:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-11-17 14:29

Updated : 2024-02-04 19:29


NVD link : CVE-2017-4927

Mitre link : CVE-2017-4927

CVE.ORG link : CVE-2017-4927


JSON object : View

Products Affected

vmware

  • vcenter_server
CWE
CWE-90

Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')