CVE-2006-0647
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 9.9%
from disclosure to weapon0 days
Published on NVDFeb 13
1st PoCFeb 8
exploitation probability
9.9%top 5% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
LDAP service in Sun Java System Directory Server 5.2, running on Linux and possibly other platforms, allows remote attackers to cause a denial of service (memory allocation error) via an LDAP packet with a crafted subtree search request, as demonstrated using the ProtoVer LDAP test suite.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/27171⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://lists.immunitysec.com/pipermail/dailydave/2006-February/002914.htmlhttp://lists.immunitysec.com/pipermail/dailydave/2006-February/002916.htmlhttp://secunia.com/advisories/18769http://securitytracker.com/id?1015604https://exchange.xforce.ibmcloud.com/vulnerabilities/24605http://sunsolve.sun.com/search/document.do?assetkey=1-26-102294-1http://www.securityfocus.com/bid/16550http://www.vupen.com/english/advisories/2006/0492