CVE-2018-14638
HIGH389-ds-base <1.3.8.4-13 - DoS
Title source: llmDescription
A flaw was found in 389-ds-base before version 1.3.8.4-13. The process ns-slapd crashes in delete_passwdPolicy function when persistent search connections are terminated unexpectedly leading to remote denial of service.
References (3)
Scores
CVSS v3
7.5
EPSS
0.0086
EPSS Percentile
74.8%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-415
CWE-400
Status
published
Affected Products (8)
fedoraproject/389_directory_server
< 1.3.8.4
redhat/enterprise_linux_aus
redhat/enterprise_linux_desktop
redhat/enterprise_linux_server
redhat/enterprise_linux_server_eus
redhat/enterprise_linux_server_eus
redhat/enterprise_linux_server_tus
redhat/enterprise_linux_workstation
Timeline
Published
Sep 14, 2018
Tracked Since
Feb 18, 2026