CVE
- Id
- 4125
- CVE No.
- CVE-2001-1321
- Status
- Candidate
- Description
- Oracle Internet Directory Server 2.1.1.x and 3.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid encodings of BER OBJECT-IDENTIFIER values, as demonstrated by the PROTOS LDAPv3 test suite.
- Phase
- Proposed (20020502)
- Votes
- ACCEPT(3) Cole, Green, Wall | MODIFY(1) Frech | NOOP(2) Cox, Foat
- Comments
- Frech> XF:oracle-ldap-protos-bo(6902)