VDB

CVE-2026-12528

CVE-2026-12528 PUBLISHED CVSS 5.4 MEDIUM

Reported by redhat · Published June 17, 2026

A flaw was found in 389 Directory Server in the __aclp__normalize_acltxt() function of aclparse.c. A malformed ACI (Access Control Instruction) string can trigger heap-buffer-overflow writes and reads during ACI parsing. The function fails to validate that the ACI keyword has sufficient length after whitespace stripping, leading to a 1-byte out-of-bounds write and subsequent out-of-bounds reads. An authenticated user with write access to the aci attribute could send a crafted ACI value to silently corrupt heap memory in the directory server process.

Risk Scores

CVSS 3.1
5.4
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

Affected Products

VendorProductVersions
Red HatRed Hat Directory Server 11
Red HatRed Hat Directory Server 12
Red HatRed Hat Directory Server 13
Red HatRed Hat Enterprise Linux 10
Red HatRed Hat Enterprise Linux 6
Red HatRed Hat Enterprise Linux 7
Red HatRed Hat Enterprise Linux 8
Red HatRed Hat Enterprise Linux 9
Red HatRed Hat Enterprise Linux 9
Red HatRed Hat Directory Server 12
Red HatRed Hat Enterprise Linux 6
Red HatRed Hat Directory Server 11
Red HatRed Hat Directory Server 13
Red HatRed Hat Enterprise Linux 10
Red HatRed Hat Enterprise Linux 7
Red HatRed Hat Enterprise Linux 8

Timeline

  • Jun 17, 2026 CVE Published
  • Jun 17, 2026 CVE Updated
  • Jun 18, 2026 EPSS Score
  • Jun 18, 2026 Coalition ESS Score
  • Jun 19, 2026 Security Advisory
  • Aug 7, 2026 EPSS Score
  • Aug 24, 2026 EPSS Score
  • Sep 5, 2026 EPSS Score
  • Sep 12, 2026 EPSS Score
  • Sep 18, 2026 EPSS Score
  • Sep 24, 2026 EPSS Score
  • Sep 26, 2026 EPSS Score

References

  • vdb-entryx_refsource_REDHAT
  • RHBZ#2489835 issue-trackingx_refsource_REDHAT
Open in Interactive Console →
$ Console Community · 100/wk Open console ›