CVE-2014-0132
EPSS 0.45%Published: 3/18/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2014-0132
Description
The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to connect as an arbitrary user and gain privileges via the authzid parameter in a SASL/GSSAPI bind.
Affected packages (1)
- Debian/389-ds-basefrom 0, < 1.3.2.9-1.1