Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2006-5779

61
FAUCET Score

CVE-2006-5779 describes a denial-of-service vulnerability in OpenLDAP versions prior to 2.3.29, affecting various distributions including Canonical Ubuntu Linux. An unauthenticated remote attacker can crash the LDAP daemon by sending BIND requests with excessively long authentication IDs, leading to an assertion failure. This high-severity vulnerability (CVSS 7.5) requires no user interaction and has a high impact on availability. Despite its age and high FAUCET Risk Score, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
< 2.3.29CPE matchmatch criteria
cpe:2.3:a:openldap:openldap:*:*:*:*:*:*:*:*
5.10CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:5.10:*:*:*:*:*:*:*
6.06CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*
6.10CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:6.10:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.5HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
75.37%
Probability of exploitation in next 30 days
EPSS Percentile
99.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
This CVE's current EPSS score of 0.7537 is in the 99th percentile among its peer group of 51,485 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2006-5779

CVE-2006-5779

References

gleg.net / downloads/VULNDISCO_META_FREE.tar.gz
Broken LinkExploit
gleg.net / vulndisco_meta.shtml
Broken LinkExploit
secunia.com / advisories/22750
Broken LinkVendor Advisory
secunia.com / advisories/22953
Broken LinkVendor Advisory
secunia.com / advisories/22996
Broken LinkVendor Advisory
secunia.com / advisories/23125
Broken LinkVendor Advisory
secunia.com / advisories/23133
Broken LinkVendor Advisory
secunia.com / advisories/23152
Broken LinkVendor Advisory
secunia.com / advisories/23170
Broken LinkVendor Advisory
security.gentoo.org / glsa/glsa-200611-25.xml
Third Party Advisory
securityreason.com / securityalert/1831
Broken Link
securitytracker.com / id
Broken LinkExploitThird Party AdvisoryVDB Entry
exchange.xforce.ibmcloud.com / vulnerabilities/30076
Third Party AdvisoryVDB Entry
issues.rpath.com / browse/RPL-820
Broken Link
mandriva.com / security/advisories
Broken Link
novell.com / linux/security/advisories/2006_72_openldap2.html
Broken Link
openldap.org / its/index.cgi/Software%20Bugs
ExploitIssue Tracking
openpkg.org / security/advisories/OpenPKG-SA-2006.033-openldap.html
Broken Link
securityfocus.com / archive/1/450728/100/0/threaded
Broken LinkThird Party AdvisoryVDB Entry
securityfocus.com / bid/20939
Broken LinkExploitThird Party AdvisoryVDB Entry
trustix.org / errata/2006/0066
Broken Link
ubuntu.com / usn/usn-384-1
Third Party Advisory
vupen.com / english/advisories/2006/4379
Broken LinkVendor Advisory