Double free vulnerability in the get_vrFilter function in servers/slapd/filter.c in OpenLDAP 2.4.40 allows remote attackers to cause a denial of service (crash) via a crafted search query with a matched values control.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1546
Reference (s):
- APPLE:APPLE-SA-2015-04-08-2
- URL: http://lists.apple.com/archives/security-announce/2015/Apr/msg00001.html
- http://www.openldap.org/devel/gitweb.cgi?p=openldap.git;a=commit;h=2f1a2dd329b91afe561cd06b872d09630d4edb6a
- http://www.openldap.org/its/?findid=8046
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=776991

