THREAT OPS › Threat News › [NVD] CVE-2026-11788 (MEDIUM 5.9) — A flaw was found in 389 Directory Server. The dereference control plugin does not check for allocation failure before using a BER structure, allowing an unauthenticated remote attacker to crash the LDAP server when the system is under memory pressure.
[NVD] CVE-2026-11788 (MEDIUM 5.9) — A flaw was found in 389 Directory Server. The dereference control plugin does not check for allocation failure before using a BER structure, allowing an unauthenticated remote attacker to crash the LDAP server when the system is under memory pressure.
CVE-2026-11788 CVSS: 5.9 MEDIUM Published: 2026-06-09T14:16:36.940
A flaw was found in 389 Directory Server. The dereference control plugin does not check for allocation failure before using a BER structure, allowing an unauthenticated remote attacker to crash the LDAP server when the system is under memory pressure.
Indicators of compromise
- CVE-2026-11788cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-11788