Red Hat Inc. Information for VU#258905

Multiple implementations of LDAP Directory Server vulnerable to buffer overflow



Vendor Statement

Vendor Statement: Red Hat, Inc:

Netscape Directory Server version 6.21 and earlier are vulnerable to this issue. In December 2004 Red Hat aquired the Netscape Directory Server product from America Online, Inc. Patches are available by contacting the Red Hat Security Response Team by email at More details are available at

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References



US-CERT has no additional comments at this time.

If you have feedback, comments, or additional information about this vulnerability, please send us email.