Логотип exploitDog
bind:CVE-2025-14905
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-14905

Количество 14

Количество 14

ubuntu логотип

CVE-2025-14905

около 1 месяца назад

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting for additional formatting characters. When a large number of aliases are processed, this oversight can lead to a heap overflow, potentially allowing a remote attacker to cause a Denial of Service (DoS) or achieve Remote Code Execution (RCE).

CVSS3: 7.2
EPSS: Низкий
redhat логотип

CVE-2025-14905

около 1 месяца назад

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting for additional formatting characters. When a large number of aliases are processed, this oversight can lead to a heap overflow, potentially allowing a remote attacker to cause a Denial of Service (DoS) or achieve Remote Code Execution (RCE).

CVSS3: 7.2
EPSS: Низкий
nvd логотип

CVE-2025-14905

около 1 месяца назад

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting for additional formatting characters. When a large number of aliases are processed, this oversight can lead to a heap overflow, potentially allowing a remote attacker to cause a Denial of Service (DoS) or achieve Remote Code Execution (RCE).

CVSS3: 7.2
EPSS: Низкий
debian логотип

CVE-2025-14905

около 1 месяца назад

A flaw was found in the 389-ds-base server. A heap buffer overflow vul ...

CVSS3: 7.2
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20415-1

14 дней назад

Security update for 389-ds

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0915-1

20 дней назад

Security update for 389-ds

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0914-1

20 дней назад

Security update for 389-ds

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0913-1

20 дней назад

Security update for 389-ds

EPSS: Низкий
rocky логотип

RLSA-2026:3208

около 1 месяца назад

Moderate: 389-ds-base security update

EPSS: Низкий
rocky логотип

RLSA-2026:3189

около 1 месяца назад

Moderate: 389-ds-base security update

EPSS: Низкий
github логотип

GHSA-q4hc-vp2m-fr47

около 1 месяца назад

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting for additional formatting characters. When a large number of aliases are processed, this oversight can lead to a heap overflow, potentially allowing a remote attacker to cause a Denial of Service (DoS) or achieve Remote Code Execution (RCE).

CVSS3: 7.2
EPSS: Низкий
oracle-oval логотип

ELSA-2026-5513

15 дней назад

ELSA-2026-5513: 389-ds:1.4 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3208

около 1 месяца назад

ELSA-2026-3208: 389-ds-base security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3189

около 1 месяца назад

ELSA-2026-3189: 389-ds-base security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-14905

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting for additional formatting characters. When a large number of aliases are processed, this oversight can lead to a heap overflow, potentially allowing a remote attacker to cause a Denial of Service (DoS) or achieve Remote Code Execution (RCE).

CVSS3: 7.2
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2025-14905

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting for additional formatting characters. When a large number of aliases are processed, this oversight can lead to a heap overflow, potentially allowing a remote attacker to cause a Denial of Service (DoS) or achieve Remote Code Execution (RCE).

CVSS3: 7.2
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2025-14905

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting for additional formatting characters. When a large number of aliases are processed, this oversight can lead to a heap overflow, potentially allowing a remote attacker to cause a Denial of Service (DoS) or achieve Remote Code Execution (RCE).

CVSS3: 7.2
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2025-14905

A flaw was found in the 389-ds-base server. A heap buffer overflow vul ...

CVSS3: 7.2
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20415-1

Security update for 389-ds

0%
Низкий
14 дней назад
suse-cvrf логотип
SUSE-SU-2026:0915-1

Security update for 389-ds

0%
Низкий
20 дней назад
suse-cvrf логотип
SUSE-SU-2026:0914-1

Security update for 389-ds

0%
Низкий
20 дней назад
suse-cvrf логотип
SUSE-SU-2026:0913-1

Security update for 389-ds

0%
Низкий
20 дней назад
rocky логотип
RLSA-2026:3208

Moderate: 389-ds-base security update

0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:3189

Moderate: 389-ds-base security update

0%
Низкий
около 1 месяца назад
github логотип
GHSA-q4hc-vp2m-fr47

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting for additional formatting characters. When a large number of aliases are processed, this oversight can lead to a heap overflow, potentially allowing a remote attacker to cause a Denial of Service (DoS) or achieve Remote Code Execution (RCE).

CVSS3: 7.2
0%
Низкий
около 1 месяца назад
oracle-oval логотип
ELSA-2026-5513

ELSA-2026-5513: 389-ds:1.4 security update (MODERATE)

15 дней назад
oracle-oval логотип
ELSA-2026-3208

ELSA-2026-3208: 389-ds-base security update (MODERATE)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-3189

ELSA-2026-3189: 389-ds-base security update (MODERATE)

около 1 месяца назад

Уязвимостей на страницу