Product
Denial of Service Vulnerability in FreeIPA Migration Handler
1 rule 1 TTP 1 CVEAn unauthenticated remote denial-of-service vulnerability in FreeIPA, tracked as CVE-2026-73197, allows attackers to exhaust system memory by sending oversized form POST requests to the migration endpoint.
Privilege Escalation in FreeIPA via Kerberos Principal Name Collision
1 TTP 1 CVECVE-2026-13097 is a privilege escalation vulnerability in FreeIPA where the 389-ds directory server fails to enforce uniqueness constraints on Kerberos principal names, allowing attackers with LDAP write access to impersonate privileged service principals.
CVE-2026-11610: 389 Directory Server SASL Heap Buffer Overflow Leading to DoS
1 TTP 1 CVEA heap buffer overflow vulnerability (CVE-2026-11610) exists in the SASL I/O layer of 389 Directory Server (389-ds-base), active since version 1.3.2. An authenticated attacker can send a specially crafted, oversized LDAP UNBIND packet after a successful SASL bind with integrity protection. This causes approximately 2 megabytes of attacker-controlled data to overflow a 512-byte heap buffer in sasl_io_recv(), leading to a denial of service (server crash).