[Date Prev][Date Next] [Chronological] [Thread] [Top]

(ITS#3383) large searches result in DoS attack

Full_Name: Quanah Gibson-Mount
Version: 2.2.18
OS: Solaris 8
URL: ftp://ftp.openldap.org/incoming/
Submission from: (NULL) (

I've found that when doing queries that have large return results, slapd will
consume all available resources on a system, in some cases leaving the system
unuseable (no available processes, no available memory, etc).  Other times,
slapd just dies when it runs out of resources.  This problem is present since at
least 2.2.17, and I believe it may be related to my earlier reported problems of
slapd suddenly segfaulting under 2.2.15 as well.

I'm currently working on a build to find out where the problem is occurring.