HIGHVulnerability
Verified
Global

NVD HIGH: CVE-2026-15722 — A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). Th...

·Source: NIST NVD

Updated:

Executive Summary

A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function in repl5_ruv.c copies digit characters from a network-supplied RUV berval into a fixed 16-byte stack buffer without bounds checking. A remote unauthenticated attacker can crash the LDAP server by sending a crafted StartNSDS50ReplicationRequest extended operation containing a repl

Analysis

A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function in repl5_ruv.c copies digit characters from a network-supplied RUV berval into a fixed 16-byte stack buffer without bounds checking. A remote unauthenticated attacker can crash the LDAP server by sending a crafted StartNSDS50ReplicationRequest extended operation containing a replica ID field with more than 16 digit characters. The overflow occurs during payload decoding, before any authorization check. Stack protectors limit impact to denial of service. CVSS Score: 7.5. Published: 2026-07-31T10:16:44.863.

Indicators of Compromise (1)

CVE (1)
CVE-2026-15722
Source Attribution

Originally published by NIST NVD on Jul 31, 2026. Verified by: NIST.

Related Threats