Stack Buffer Overflow Vulnerability in 389 Directory Server by Red Hat
CVE-2026-15722
Key Information:
- Vendor
Red Hat
- Status
- Vendor
- CVE Published:
- 31 July 2026
What is CVE-2026-15722?
A stack buffer overflow vulnerability exists in the 389 Directory Server, specifically within the get_ruvelement_from_berval() function located in repl5_ruv.c. This flaw allows a remote, unauthenticated attacker to send a malicious StartNSDS50ReplicationRequest that exceeds the bounds of a 16-byte fixed stack buffer by including a replica ID with more than 16 digit characters. This overflow can cause the LDAP server to crash due to the lack of proper bounds checking during payload decoding, occurring before any authorization checks are performed. Although stack protectors mitigate the potential impact, the vulnerability can still lead to denial of service conditions.
Affected Version(s)
Red Hat Directory Server 11.7 E4S for RHEL 8 8080020260806114250.f969626e
Red Hat Directory Server 11.9 for RHEL 8 8100020260803140625.37ed7c03
Red Hat Directory Server 12.2 E4S for RHEL 9 9020020260730155601.1674d574
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved