{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"Sun Java System Directory Server Enterprise Edition version 6.3 ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"Sun Java System Directory Server Enterprise Edition version 6.0 ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"Sun Java System Directory Server Enterprise Edition version 6.1 ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"Sun Java System Directory Server Enterprise Edition version 6.3.1 sans le correctif 141958-01.","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}},{"description":"Sun Java System Directory Server Enterprise Edition version 6.2 ;","product":{"name":"N/A","vendor":{"name":"N/A","scada":false}}}],"affected_systems_content":null,"content":"## Description\n\nDe multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Directory Server\nEnterprise Edition versions 6.x :\n\n-   sous certaines conditions, l'op\u00e9ration d'un client peut \u00eatre\n    ex\u00e9cut\u00e9e avec les privil\u00e8ges d'un autre client ;\n-   en envoyant des paquets sp\u00e9cifiquement constitu\u00e9s, il est possible\n    d'emp\u00eacher le serveur de r\u00e9pondre aux nouvelles connexions ;\n-   en utilisant un client psearch sp\u00e9cifique, il est possible\n    d'emp\u00eacher le serveur d'envoyer des r\u00e9ponses aux autres clients\n    psearch.\n\n## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[],"links":[{"title":"Bulletin de s\u00e9curit\u00e9 Sun Solaris #270789 du 23 d\u00e9cembre    2009 :","url":"http://sunsolve.sun.com/search/document.do?assetkey=1-66-270789-1"}],"reference":"CERTA-2009-AVI-561","revisions":[{"description":"version initiale.","revision_date":"2009-12-29T00:00:00.000000"}],"risks":[{"description":"D\u00e9ni de service \u00e0 distance"},{"description":"\u00c9l\u00e9vation de privil\u00e8ges"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s dans <span class=\"textit\">Directory Server\nEnterprise Edition</span> permettent de r\u00e9aliser un d\u00e9ni de service \u00e0\ndistance ou de b\u00e9n\u00e9ficier des privil\u00e8ges d'un autre utilisateur.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans Directory Server Enterprise Edition","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Sun Solaris #270789 du 23 d\u00e9cembre 2009","url":null}]}
