VYPR

rpm package

suse/389-ds&distro=SUSE Linux Enterprise Server 16.0

pkg:rpm/suse/389-ds&distro=SUSE%20Linux%20Enterprise%20Server%2016.0

Vulnerabilities (1)

  • CVE-2025-14905HigFeb 23, 2026
    affected < 3.0.6~git249.6688af9b2-160000.1.1fixed 3.0.6~git249.6688af9b2-160000.1.1

    A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schema.c` file. This occurs because the code incorrectly calculates the buffer size by summing alias string lengths without accounting f