CVE-2015-1545
5.0
CVSS v2.0 Base Score
64.84%
MEDIUM RiskEPSS (98th percentile)
NVD-CWE-Other
The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 through 2.4.40 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.
Published: 2/12/2015
Modified: 5/6/2026
Vulnerability Summary
CVSS v2 Score
5
AV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS Score (Exploitation Probability)
64.84%MEDIUM Exploitation Risk
98th percentile
This vulnerability has a 64.84% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.
CWE Classification
NVD-CWE-Other