CVE-2024-1062
389-ds-base: a heap overflow leading to denail-of-servce while writing a value larger than 256 chars (in log_entry_attr)
CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th
A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than 256 chars in log_entry_attr.
| CWE | CWE-122 |
| Published | Feb 12, 2024 |
| Last Updated | Feb 25, 2026 |
Stay Ahead of the Next One
Get instant alerts for
Be the first to know when new medium vulnerabilities are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Affected Versions
Red Hat / Red Hat Directory Server 11.5 E4S for RHEL 8
All versions affected Red Hat / Red Hat Directory Server 11.7 for RHEL 8
All versions affected Red Hat / Red Hat Directory Server 11.8 for RHEL 8
All versions affected Red Hat / Red Hat Directory Server 12.2 EUS for RHEL 9
All versions affected Red Hat / Red Hat Enterprise Linux 8
All versions affected Red Hat / Red Hat Enterprise Linux 8.6 Extended Update Support
All versions affected Red Hat / Red Hat Enterprise Linux 8.8 Extended Update Support
All versions affected Red Hat / Red Hat Enterprise Linux 9.2 Extended Update Support
All versions affected Red Hat / Red Hat Directory Server 12
All versions affected Red Hat / Red Hat Enterprise Linux 6
All versions affected Red Hat / Red Hat Enterprise Linux 7
All versions affected Red Hat / Red Hat Enterprise Linux 9
All versions affected References
access.redhat.com: https://access.redhat.com/errata/RHSA-2024:1074 access.redhat.com: https://access.redhat.com/errata/RHSA-2024:1372 access.redhat.com: https://access.redhat.com/errata/RHSA-2024:3047 access.redhat.com: https://access.redhat.com/errata/RHSA-2024:4209 access.redhat.com: https://access.redhat.com/errata/RHSA-2024:4633 access.redhat.com: https://access.redhat.com/errata/RHSA-2024:5690 access.redhat.com: https://access.redhat.com/errata/RHSA-2024:7458 access.redhat.com: https://access.redhat.com/errata/RHSA-2025:1632 access.redhat.com: https://access.redhat.com/security/cve/CVE-2024-1062 bugzilla.redhat.com: https://bugzilla.redhat.com/show_bug.cgi?id=2256711 bugzilla.redhat.com: https://bugzilla.redhat.com/show_bug.cgi?id=2261879