AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-14159

MEDIUM · CVSS 4.7 EPSS 0.35%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-09-05 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.7. See the original NVD description below for full technical details.

CVE
CVE-2017-14159
Severity
MEDIUM
CVSS
4.7
EPSS
0.35%

Original NVD Description

slapd in OpenLDAP 2.4.45 and earlier creates a PID file after dropping privileges to a non-root account, which might allow local users to kill arbitrary processes by leveraging access to this non-root account for PID file modification before a root script executes a "kill `cat /pathname`" command, as demonstrated by openldap-initscript.

Related CVEs

Other vulnerabilities affecting the same vendor(s)