Unrated severityNVD Advisory· Published Feb 12, 2024· Updated Feb 25, 2026
389-ds-base: a heap overflow leading to denail-of-servce while writing a value larger than 256 chars (in log_entry_attr)
CVE-2024-1062
Description
A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than 256 chars in log_entry_attr.
Affected products
16- osv-coords16 versionspkg:rpm/almalinux/389-ds-basepkg:rpm/almalinux/389-ds-base-develpkg:rpm/almalinux/389-ds-base-legacy-toolspkg:rpm/almalinux/389-ds-base-libspkg:rpm/almalinux/389-ds-base-snmppkg:rpm/almalinux/python3-lib389pkg:rpm/opensuse/389-ds&distro=openSUSE%20Leap%2015.5pkg:rpm/opensuse/389-ds&distro=openSUSE%20Leap%2015.6pkg:rpm/suse/389-ds&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-ESPOSpkg:rpm/suse/389-ds&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-LTSSpkg:rpm/suse/389-ds&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP5pkg:rpm/suse/389-ds&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP6pkg:rpm/suse/389-ds&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP4-LTSSpkg:rpm/suse/389-ds&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP4pkg:rpm/suse/389-ds&distro=SUSE%20Manager%20Proxy%204.3pkg:rpm/suse/389-ds&distro=SUSE%20Manager%20Server%204.3
< 1.4.3.39-3.module_el8.10.0+3829+ea459e35+ 15 more
- (no CPE)range: < 1.4.3.39-3.module_el8.10.0+3829+ea459e35
- (no CPE)range: < 1.4.3.39-3.module_el8.10.0+3829+ea459e35
- (no CPE)range: < 1.4.3.39-3.module_el8.10.0+3829+ea459e35
- (no CPE)range: < 1.4.3.39-3.module_el8.10.0+3829+ea459e35
- (no CPE)range: < 1.4.3.39-3.module_el8.10.0+3829+ea459e35
- (no CPE)range: < 1.4.3.39-3.module_el8.10.0+3829+ea459e35
- (no CPE)range: < 2.2.8~git65.347aae6-150500.3.17.1
- (no CPE)range: < 2.2.8~git65.347aae6-150600.8.3.1
- (no CPE)range: < 2.0.20~git9.5e2d637c-150400.3.42.3
- (no CPE)range: < 2.0.20~git9.5e2d637c-150400.3.42.3
- (no CPE)range: < 2.2.8~git65.347aae6-150500.3.17.1
- (no CPE)range: < 2.2.8~git65.347aae6-150600.8.3.1
- (no CPE)range: < 2.0.20~git9.5e2d637c-150400.3.42.3
- (no CPE)range: < 2.0.20~git9.5e2d637c-150400.3.42.3
- (no CPE)range: < 2.0.20~git9.5e2d637c-150400.3.42.3
- (no CPE)range: < 2.0.20~git9.5e2d637c-150400.3.42.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- access.redhat.com/errata/RHSA-2024:1074mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/errata/RHSA-2024:1372mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/errata/RHSA-2024:3047mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/errata/RHSA-2024:4209mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/errata/RHSA-2024:4633mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/errata/RHSA-2024:5690mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/errata/RHSA-2024:7458mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/errata/RHSA-2025:1632mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/security/cve/CVE-2024-1062mitrevdb-entryx_refsource_REDHAT
- bugzilla.redhat.com/show_bug.cgimitreissue-trackingx_refsource_REDHAT
- bugzilla.redhat.com/show_bug.cgimitre
News mentions
0No linked articles in our index yet.