CVE-2026-11788
Red Hat Red Hat Directory Server 11, Red Hat Directory Server 12, Red Hat Directory Server 13
A flaw was found in 389 Directory Server. The dereference control plugin does not check for allocation failure before using a BER structure, allowing an unauthenticated remote attacker to crash the LDAP server when the system is under memory pressure.
- CVSS
- 7.5
- EPSS
- 0.35% 27.3% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.09