Asymmetric denial of service In 389-ds-base
Description
A flaw was found in 389-ds-base. A remote, authenticated attacker could exploit a vulnerability in the Simple Authentication and Security Layer (SASL) UNBIND process. By sending a specially crafted request, the attacker can cause a connection to stall, leading to resource exhaustion and a Denial of Service (DoS) for the server.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component |
|---|---|
rpm rhel10 | |
rpm rhel7 | |
rpm rhel8 | |
rpm rhel9 | |
rpm rhel6 |
Aliases
1. 2. 3.