Bugzilla – Bug 1227610
VUL-0: CVE-2024-6237: 389-ds: unauthenticated user can trigger a DoS by sending a specific extended search request
Last modified: 2024-07-11 00:30:14 UTC
A flaw was found in the 389 Directory Server. This flaw allows an unauthenticated user to cause a systematic server crash while sending a specific extended search request, leading to a denial of service. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2024-6237 https://bugzilla.redhat.com/show_bug.cgi?id=2293579 https://www.cve.org/CVERecord?id=CVE-2024-6237 https://access.redhat.com/security/cve/CVE-2024-6237 https://github.com/389ds/389-ds-base/issues/5989