LDAP: Message Too Long

This protocol anomaly detects an LDAP message where the length of the message is greater than the typical length. This may indicate malicious behavior of the LDAP client.

Extended Description

A protocol anomaly exists in LDAP messages having a length different from what is specified for the TCP packet in which it is contained, and should be detected.

Short Name
LDAP:OVERFLOW:MESSAGE-TOO-LONG
Severity
Minor
Recommended
False
Recommended Action
None
Category
LDAP
Keywords
CVE-2008-4023 CVE-2010-0358 CVE-2011-0917 CVE-2020-0718 CVE-2020-0761 CVE-2020-0856 CVE-2020-10704 CVE-2020-12243 bid:46231 ldap long too
Release Date
01/30/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Frequently
CVSS Score

10.0

5.0

Found a potential security threat?