Type Confusion Vulnerability in 389 Directory Server by Red Hat
CVE-2026-11785
4.3MEDIUM
What is CVE-2026-11785?
A type confusion flaw in the 389 Directory Server allows authenticated users to retrieve partial stack address information through LDAP responses. This vulnerability arises from improper handling of SSO token extended operation requests, potentially leading to unauthorized disclosure of sensitive data.