Red HatCVE-2026-11770
A flaw was found in 389 Directory Server
High7.5CVE-2026-11770 · Published Jul 31, 2026 · updated Aug 18, 2026
A flaw was found in 389 Directory Server. An unauthenticated remote attacker can inject LDAP search filters into the CleanAllRUV replication status-check extended operation. Because the handler performs the search against cn=config with elevated replication plugin privileges and returns a boolean match result, the attacker can extract sensitive server configuration metadata, including replication bind DNs and password storage scheme information.
Affected versions
The source does not list versions here. See the source advisory for affected products and fixes.
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-90
- www.cve.org/CVERecord?id=CVE-2026-11770
- nvd.nist.gov/vuln/detail/CVE-2026-11770
- access.redhat.com/errata/RHSA-2026:55421
- access.redhat.com/errata/RHSA-2026:55422
- access.redhat.com/errata/RHSA-2026:55423
- access.redhat.com/errata/RHSA-2026:55424
- access.redhat.com/errata/RHSA-2026:55425
- access.redhat.com/errata/RHSA-2026:55426
- access.redhat.com/errata/RHSA-2026:55530
- access.redhat.com/errata/RHSA-2026:55532
- access.redhat.com/errata/RHSA-2026:55756
- access.redhat.com/errata/RHSA-2026:55757
- access.redhat.com/errata/RHSA-2026:55758
- access.redhat.com/errata/RHSA-2026:55794
- access.redhat.com/errata/RHSA-2026:56047
- access.redhat.com/errata/RHSA-2026:56048
- access.redhat.com/errata/RHSA-2026:56050
- access.redhat.com/security/cve/CVE-2026-11770
- bugzilla.redhat.com/show_bug.cgi?id=2484802
- github.com/389ds/389-ds-base/blob/main/ldap/servers/plugins/replication/repl_extop.c
More Red Hat advisories
All Red Hat| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Jul 31 | Red Hat Ansible Automation Platform 2: improper certificate validation | High8.2 | No fix yet |
| Jul 31 | Red Hat gnome-remote-desktop as shipped: resource exhaustion | High7.5 | No fix yet |
| Jul 31 | Red Hat: buffer overflow | High7.5 | No fix yet |
| Jul 31 | Red Hat Advanced Cluster Security 4: insufficient authenticity check | High8.5 | No fix yet |
| Jul 31 | Red Hat SAML protocol implementation of Keycloak: improper input validation | Low3.4 | No fix yet |
| Jul 31 | Red Hat TokenManager: missing authorization | Medium4.2 | No fix yet |