An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash the service with crafted DNS responses.
https://security-tracker.debian.org/tracker/CVE-2014-8182
https://access.redhat.com/security/cve/cve-2014-8182
Source: Mitre, NVD
Published: 2020-01-02
Updated: 2020-01-09
Base Score: 4.3
Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:P
Severity: Medium
Base Score: 7.5
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Severity: High