The SecureWay implementation of LDAP from IBM reportedly contains remotely exploitable vulnerabilities. By sending malformed LDAP requests to service, it is possible to crash the service. It may be possible to execute arbitrary code on the underlying host if this behaviour is due to buffer overflows. Note: It has been reported that only Win2K and Solaris versions of SecureWay Directory are vulnerable.
The SecureWay implementation of LDAP from IBM reportedly contains remotely exploitable vulnerabilities. By sending malformed LDAP requests to service, it is possible to crash the service. It may be possible to execute arbitrary code on the underlying host if this behaviour is due to buffer overflows. Note: It has been reported that only Win2K and Solaris versions of SecureWay Directory are vulnerable.