Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-73196

Опубликовано: 20 авг. 2026
Источник: redhat
CVSS3: 4.3
EPSS Низкий

Описание

A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this vulnerability by submitting an oversized One-Time Password (OTP) key value. This oversized key is then decoded and re-encoded without proper size limits, consuming excessive CPU and memory resources. This can lead to a denial of service, degrading the availability of the IPA service.

Меры по смягчению последствий

To mitigate this issue, enforce conservative HTTP request-body limits on the /ipa/session/json endpoint to reject oversized payloads before they reach the vulnerable IPA parameter conversion. Additionally, if operationally feasible, restrict self-managed token creation to trusted users and implement monitoring or rate-limiting for repeated large authenticated requests. Changes to HTTP server configurations or FreeIPA permissions may require service restarts or reloads to take effect.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10ipaFix deferred
Red Hat Enterprise Linux 6ipaOut of support scope
Red Hat Enterprise Linux 7ipaFix deferred
Red Hat Enterprise Linux 8ipaFix deferred
Red Hat Enterprise Linux 9ipaFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-770
https://bugzilla.redhat.com/show_bug.cgi?id=2474712ipa: FreeIPA: Authenticated DoS in `otptoken-add` via unbounded OTP key decoding/re-encoding

EPSS

Процентиль: 15%
0.00244
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
8 дней назад

(A flaw was found in FreeIPA. A low-privilege authenticated user can ex ...)

CVSS3: 4.3
nvd
9 дней назад

A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this vulnerability by submitting an oversized One-Time Password (OTP) key value. This oversized key is then decoded and re-encoded without proper size limits, consuming excessive CPU and memory resources. This can lead to a denial of service, degrading the availability of the IPA service.

CVSS3: 4.3
debian
9 дней назад

A flaw was found in FreeIPA. A low-privilege authenticated user can ex ...

CVSS3: 4.3
github
9 дней назад

A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this vulnerability by submitting an oversized One-Time Password (OTP) key value. This oversized key is then decoded and re-encoded without proper size limits, consuming excessive CPU and memory resources. This can lead to a denial of service, degrading the availability of the IPA service.

EPSS

Процентиль: 15%
0.00244
Низкий

4.3 Medium

CVSS3