CVE-2026-70409
published 2026-09-01CVE-2026-70409: Improper Validation of Specified Quantity in Input vulnerability in Erlang/OTP eldap allows a malicious or compromised LDAP server to degrade availability by…
PriorityP343medium6.3CVSS 4.0
AVNACLATPPRNUINVCNVINVALSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.42%
35.6th percentile
Improper Validation of Specified Quantity in Input vulnerability in Erlang/OTP eldap allows a malicious or compromised LDAP server to degrade availability by returning a referral URL whose port component is a very long run of digits.
eldap:parse_port/2 passes the port substring straight to list_to_integer/1 with no length bound. The surrounding try ... catch only rejects a value that fails to parse, so a syntactically valid port of up to roughly 1.26 million digits converts successfully and costs the caller hundreds of milliseconds of arbitrary-precision arithmetic per referral. The conversion function itself is documented to accept integers of any size, so bounding the input is the caller's responsibility. Reaching the flaw requires the application to pass a server-supplied referral to eldap:parse_ldap_url/1, which eldap never calls itself: referral strings are returned to the caller unparsed.
This issue affects OTP from OTP 17.0 before OTP 27.3.4.17, from OTP 28.0 before OTP 28.5.0.6, and from OTP 29.0 before OTP 29.0.6, corresponding to eldap from 1.0.3 before 1.2.14.2, from 1.2.15 before 1.2.16.1, and from 1.3 before 1.3.1.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| erlang | otp | >= 1.0.3 < 1.2.14.2 | 1.2.14.2 |
| erlang | otp | >= 1.2.15 < 1.2.16.1 | 1.2.16.1 |
| erlang | otp | >= 1.3 < 1.3.1 | 1.3.1 |
| erlang | otp | >= 17.0 < 27.3.4.17 | 27.3.4.17 |
| erlang | otp | >= 28.0 < 28.5.0.6 | 28.5.0.6 |
| erlang | otp | >= 29.0 < 29.0.6 | 29.0.6 |
| erlang | otp | >= d8dbf15de4fa1a08b9a05e7d8e08fdb025fe1dc3 < * | * |
CVSS provenance
nvdv4.06.3MEDIUMCVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
vendor_redhat6.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
eldap: eldap: Denial of Service via long LDAP referral URL port
vendor_redhat·2026-09-01·CVSS 6.3
CVE-2026-70409 [MEDIUM] CWE-1284 eldap: eldap: Denial of Service via long LDAP referral URL port
eldap: eldap: Denial of Service via long LDAP referral URL port
A flaw was found in eldap, a component of Erlang/OTP. A malicious or compromised Lightweight Directory Access Protocol (LDAP) server could exploit this vulnerability by returning a referral Uniform Resource Locator (URL) with an excessively long port number. This unbounded port component is then processed by the eldap:parse_port/2 function, leading to a significant increase in processing time due to arbitrary-precision arithmetic. This can degrade the availability of the affected system, resulting in a Denial of Service (DoS).
Mitigation: To mitigate this issue, ensure that applications utilizing the eldap component are configured to connect only to trusted LDAP servers. Additionally, if possible, configure applications to d
VulDB
Erlang OTP eldap eldap:parse_port input validation (EUVD-2026-69247)
vuldb·2026-09-01·CVSS 6.3
CVE-2026-70409 [MEDIUM] Erlang OTP eldap eldap:parse_port input validation (EUVD-2026-69247)
A vulnerability was found in Erlang OTP. It has been rated as problematic. Affected by this vulnerability is the function eldap:parse_port of the component eldap. This manipulation causes improper input validation.
This vulnerability is registered as CVE-2026-70409. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to install a patch to address this issue.
No detection rules found.
No public exploits indexed.
https://cna.erlef.org/cves/CVE-2026-70409.htmlhttps://github.com/erlang/otp/commit/aba0fe8c2d700bf4ac94607cf7f00e53bbe4042dhttps://github.com/erlang/otp/commit/e3be1cfe9f6cedd0cd20d9905e05601dfb31c8aahttps://github.com/erlang/otp/security/advisories/GHSA-9vgh-c8cm-m9p4https://osv.dev/vulnerability/EEF-CVE-2026-70409https://www.erlang.org/doc/system/versions.html#order-of-versions
2026-09-01
Published