In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade RHEL:7 389-ds-base-snmp to version 0:1.3.6.1-28.el7_4 or higher.
This issue was patched in RHSA-2018:0414.
Note: Versions mentioned in the description apply only to the upstream 389-ds-base-snmp package and not the 389-ds-base-snmp package as distributed by RHEL.
See How to fix? for RHEL:7 relevant fixed versions and status.
It was found that 389-ds-base since 1.3.6.1 up to and including 1.4.0.3 did not always handle internal hash comparison operations correctly during the authentication process. A remote, unauthenticated attacker could potentially use this flaw to bypass the authentication process under very rare and specific circumstances.