A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory growth when an authenticated client stops reading sync responses, enabling denial of service. Additional race conditions in plugin thread lifecycle can cause crashes during connection teardown or shutdown.
References
| Link | Resource |
|---|---|
| https://access.redhat.com/security/cve/CVE-2026-11611 | Vendor Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2485424 | Issue Tracking Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-06-08 17:16
Updated : 2026-07-23 07:10
NVD link : CVE-2026-11611
Mitre link : CVE-2026-11611
CVE.ORG link : CVE-2026-11611
JSON object : View
Products Affected
redhat
- enterprise_linux
- 389_directory_server
- directory_server
CWE
CWE-400
Uncontrolled Resource Consumption
