CVE-2025-2487
published 2025-03-18CVE-2025-2487: A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return…
PriorityP421medium4.9CVSS 3.1
AVNACLPRHUINSUCNINAH
EPSS
0.55%
42.6th percentile
A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return value is not tested and a NULL pointer is dereferenced. If a privileged user performs a ldap MODDN operation after a failed operation, it could lead to a Denial of Service (DoS) or system crash.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | 389-ds-base | < 389-ds-base 3.1.2+dfsg1-1 (sid) | 389-ds-base 3.1.2+dfsg1-1 (sid) |
| port389 | 389-ds-base | >= 0 < 3.1.2+dfsg1-1 | 3.1.2+dfsg1-1 |
CVSS provenance
nvdv3.14.9MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
osv4.9MEDIUM
vendor_debian4.9MEDIUM
vendor_redhat4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-33fh-4pvq-9x35: A flaw was found in the 389-ds-base LDAP Server
ghsa_unreviewed·2025-03-18
CVE-2025-2487 [MEDIUM] CWE-476 GHSA-33fh-4pvq-9x35: A flaw was found in the 389-ds-base LDAP Server
A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return value is not tested and a NULL pointer is dereferenced. If a privileged user performs a ldap MODDN operation after a failed operation, it could lead to a Denial of Service (DoS) or system crash.
OSV
CVE-2025-2487: A flaw was found in the 389-ds-base LDAP Server
osv·2025-03-18·CVSS 4.9
CVE-2025-2487 [MEDIUM] CVE-2025-2487: A flaw was found in the 389-ds-base LDAP Server
A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return value is not tested and a NULL pointer is dereferenced. If a privileged user performs a ldap MODDN operation after a failed operation, it could lead to a Denial of Service (DoS) or system crash.
Red Hat
389-ds-base: null pointer dereference leads to denial of service
vendor_redhat·2025-03-18·CVSS 4.9
CVE-2025-2487 [MEDIUM] CWE-476 389-ds-base: null pointer dereference leads to denial of service
389-ds-base: null pointer dereference leads to denial of service
A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return value is not tested and a NULL pointer is dereferenced. If a privileged user performs a ldap MODDN operation after a failed operation, it could lead to a Denial of Service (DoS) or system crash.
A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return value is not tested and a NULL pointer is dereferenced. If a privileged user performs a ldap MODDN operation after a failed operation, it could lead to a Denial of Service (DoS) or system crash.
Statement: Red Hat rates
Debian
CVE-2025-2487: 389-ds-base - A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing ...
vendor_debian·2025·CVSS 4.9
CVE-2025-2487 [MEDIUM] CVE-2025-2487: 389-ds-base - A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing ...
A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return value is not tested and a NULL pointer is dereferenced. If a privileged user performs a ldap MODDN operation after a failed operation, it could lead to a Denial of Service (DoS) or system crash.
Scope: local
bookworm: open
bullseye: open
sid: resolved (fixed in 3.1.2+dfsg1-1)
trixie: resolved (fixed in 3.1.2+dfsg1-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://access.redhat.com/errata/RHSA-2025:3663https://access.redhat.com/errata/RHSA-2025:3670https://access.redhat.com/errata/RHSA-2025:4491https://access.redhat.com/errata/RHSA-2025:7395https://access.redhat.com/security/cve/CVE-2025-2487https://bugzilla.redhat.com/show_bug.cgi?id=2353071https://github.com/389ds/389-ds-base/security/advisories/GHSA-426r-w669-66gw
2025-03-18
Published