CVE-2026-11788
MEDIUM
NVD
CVSS Score
5.9
Severity
MEDIUM
Published
Jun 09, 2026
Vendor
unknown
Description
A flaw was found in 389 Directory Server. The dereference control plugin does not check for allocation failure before using a BER structure, allowing an unauthenticated remote attacker to crash the LDAP server when the system is under memory pressure.