CVE-2018-10935: Red Hat 389 Directory Server

Medium severity, CVSS 6.5. EPSS: 1.8% chance of exploitation in the next 30 days.

A flaw was found in the 389 Directory Server that allows users to cause a crash in the LDAP server using ldapsearch with server side sort.

Affected products

  • Red Hat 389 Directory Server: from 1.3.0.0, before 1.3.8.7 (fixed in 1.3.8.7); from 1.4.0.0, before 1.4.0.14 (fixed in 1.4.0.14)

Published 2018-09-11. Last modified 2026-06-17.