Sun Java System Directory Proxy Server 6.0, 6.1, and 6.2 classifies a connection using the "bind-dn" criteria, which can cause an incorrect application of policy and allows remote attackers to bypass intended access restrictions for the server.
http://www.vupen.com/english/advisories/2008/1374/references
http://www.securitytracker.com/id?1019925
http://www.securityfocus.com/bid/28941
http://sunsolve.sun.com/search/document.do?assetkey=1-26-235381-1