GHSA-xmh3-2gr9-2rwpMediumCVSS 6.5
A flaw was found in 389-ds-base. A remote, authenticated attacker could exploit a vulnerability...
🔗 CVE IDs covered (1)
📋 Description
A flaw was found in 389-ds-base. A remote, authenticated attacker could exploit a vulnerability in the Simple Authentication and Security Layer (SASL) UNBIND process. By sending a specially crafted request, the attacker can cause a connection to stall, leading to resource exhaustion and a Denial of Service (DoS) for the server.
🔗 References (7)
- https://nvd.nist.gov/vuln/detail/CVE-2026-78701
- https://access.redhat.com/security/cve/CVE-2026-78701
- https://bugzilla.redhat.com/show_bug.cgi?id=2523232
- https://access.redhat.com/errata/RHSA-2026:64784
- https://access.redhat.com/errata/RHSA-2026:64785
- https://access.redhat.com/errata/RHSA-2026:65119
- https://github.com/advisories/GHSA-xmh3-2gr9-2rwp