389-ds-base

Direct Vulnerabilities

Known vulnerabilities in the 389-ds-base package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Improper Authentication

*
  • H
Stack-based Buffer Overflow

*
  • H
LDAP Injection

*
  • M
Insufficient Granularity of Access Control

*
  • L
Information Exposure

*
  • M
Not Using a Random IV with CBC Mode

*
  • M
Heap-based Buffer Overflow

*
  • L
CVE-2026-12528

*
  • M
Heap-based Buffer Overflow

*
  • M
Stack-based Buffer Overflow

*
  • L
Heap-based Buffer Overflow

*
  • L
CVE-2026-11791

*
  • M
Resource Exhaustion

*
  • M
Integer Underflow

*
  • H
NULL Pointer Dereference

*
  • M
Buffer Over-read

*
  • M
Out-of-bounds Read

*
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • H
Integer Overflow or Wraparound

*
  • M
Resource Exhaustion

*
  • H
Heap-based Buffer Overflow

*
  • H
Heap-based Buffer Overflow

<3.1.2+dfsg1-1+deb13u1
  • M
Information Exposure

<1.4.4.10-1
  • M
Incorrect Permission Assignment for Critical Resource

<1.4.2.4-1
  • M
Information Exposure

<1.4.1.5-1
  • H
Resource Exhaustion

<1.4.0.18-1
  • H
Double Free

<1.4.0.18-1
  • H
Improper Input Validation

<1.4.0.18-1
  • M
Improper Input Validation

<1.4.0.15-1
  • H
Cleartext Storage of Sensitive Information

<1.4.0.15-1
  • M
Race Condition

<1.4.0.15-1
  • H
Improper Authentication

<1.3.7.9-1
  • H
Out-of-Bounds

<1.3.7.9-1
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
NULL Pointer Dereference

<3.1.2+dfsg1-1
  • L
CVE-2024-8445

<2.0.11-1
  • M
CVE-2024-6237

<2.4.5+dfsg1-1
  • L
Improper Validation of Consistency within Input

<2.3.1+dfsg1-1+deb12u1
  • L
CVE-2024-3657

<2.3.1+dfsg1-1+deb12u1
  • L
Improper Input Validation

<2.3.1+dfsg1-1+deb12u1
  • L
Heap-based Buffer Overflow

<2.3.4+dfsg1-1
  • M
Improper Certificate Validation

<2.3.4+dfsg1-1
  • M
NULL Pointer Dereference

<2.3.1-1
  • H
Authorization Bypass Through User-Controlled Key

<2.3.1-1
  • M
Improper Authentication

<2.0.15-1
  • H
CVE-2022-0918

<2.0.15-1.1
  • H
Double Free

<2.0.15-1
  • M
CVE-2021-3652

<1.4.4.17-1
  • M
NULL Pointer Dereference

<1.4.4.11-2
  • H
Missing Release of Resource after Effective Lifetime

<1.4.1.5-1
  • H
Out-of-Bounds

<1.3.8.2-1
  • H
Out-of-bounds Read

<1.3.7.10-1
  • C
Information Exposure

<1.3.6.7-1
  • M
NULL Pointer Dereference

<1.3.5.17-1
  • H
Out-of-bounds Read

<1.3.5.15-2
  • H
Information Exposure

*
  • C
Information Management Errors

<1.3.5.15-1
  • H
Information Exposure

<1.3.5.13-1
  • H
Resource Management Errors

<1.3.4.8-1
  • H
Security Features

<1.3.3.12-1
  • H
Improper Access Control

<1.3.3.10-1
  • M
Information Exposure

<1.3.3.5-4
  • M
Information Exposure

<1.3.3.5-4
  • M
Information Exposure

<1.3.2.21-1
  • M
Improper Authentication

<1.3.2.9-1.1
  • M
Improper Input Validation

<1.3.2.9-1
  • M
Improper Input Validation

<1.3.2.9-1
  • M
Access Restriction Bypass

<1.3.2.9-1
  • L
Access Restriction Bypass

<1.3.2.9-1
  • M
Improper Input Validation

<1.3.2.9-1
  • M
Numeric Errors

<1.3.0.3-1
  • M
Access Restriction Bypass

<1.2.11.15-1