Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-11611

Опубликовано: 16 апр. 2026
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory growth when an authenticated client stops reading sync responses, enabling denial of service. Additional race conditions in plugin thread lifecycle can cause crashes during connection teardown or shutdown.

Отчет

Red Hat rates this issue as Moderate impact. The Content Synchronization persistent search plugin in 389-ds-base allows unbounded memory growth when an authenticated client opens a sync search and stops reading responses—modification events queue until memory exhaustion and server crash (confirmed on production binaries). Any authenticated user with search ACL access can trigger the primary denial-of-service path. Additional race conditions during connection teardown or shutdown can cause crashes on weak-memory-model architectures. These secondary paths have no configuration workaround.

Меры по смягчению последствий

Bug 1 (Queue DoS): Reduce SYNC_MAX_CONCURRENT from the default of 10 to minimize the number of clients that can accumulate queues. Apply network-level rate limiting on persistent sync search requests. Monitor client connections and terminate stalled sync clients that stop reading for an extended period. Set system-level memory limits (e.g., LimitAS= in the systemd unit file or cgroup memory limits) to prevent unbounded memory growth. Bugs 2 and 3: No workaround available — these are code-level race conditions that require source fixes.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Directory Server 11redhat-ds:11/389-ds-baseFix deferred
Red Hat Directory Server 12redhat-ds:12/389-ds-baseFix deferred
Red Hat Directory Server 13389-ds-baseFix deferred
Red Hat Enterprise Linux 10389-ds-baseFix deferred
Red Hat Enterprise Linux 6389-ds-baseNot affected
Red Hat Enterprise Linux 7389-ds-baseFix deferred
Red Hat Enterprise Linux 8389-ds-baseFix deferred
Red Hat Enterprise Linux 9389-ds-baseFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2485424389-ds-base: 389-ds-base: Content Sync plugin unbounded queue growth and race conditions

EPSS

Процентиль: 16%
0.00244
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
2 месяца назад

A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory growth when an authenticated client stops reading sync responses, enabling denial of service. Additional race conditions in plugin thread lifecycle can cause crashes during connection teardown or shutdown.

CVSS3: 6.5
nvd
2 месяца назад

A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory growth when an authenticated client stops reading sync responses, enabling denial of service. Additional race conditions in plugin thread lifecycle can cause crashes during connection teardown or shutdown.

CVSS3: 6.5
debian
2 месяца назад

A flaw was found in 389 Directory Server. The Content Synchronization ...

CVSS3: 6.5
github
2 месяца назад

A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory growth when an authenticated client stops reading sync responses, enabling denial of service. Additional race conditions in plugin thread lifecycle can cause crashes during connection teardown or shutdown.

suse-cvrf
30 дней назад

Security update for 389-ds

EPSS

Процентиль: 16%
0.00244
Низкий

6.5 Medium

CVSS3