Related Vulnerabilities: CVE-2021-3514  

A security issue was found in 389-ds-base. When using a sync_repl client, an authenticated attacker can cause a NULL pointer dereference using a specially crafted query, causing a crash of 389-ds-base.

Severity Low

Remote Yes

Type Denial of service

Description

A security issue was found in 389-ds-base. When using a sync_repl client, an authenticated attacker can cause a NULL pointer dereference using a specially crafted query, causing a crash of 389-ds-base.

AVG-1887 389-ds-base 2.0.3-2 Low Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1952907
https://github.com/389ds/389-ds-base/issues/4711
https://github.com/389ds/389-ds-base/pull/4738
https://github.com/389ds/389-ds-base/commit/d7eef2fcfbab2ef8aa6ee0bf60f0a9b16ede66e0