Skip to content
VulniPulse
Highest advisory severityHigh 1 vendor · 1 advisory

CVE-2026-11770

CVE-2026-11770: 1 tracked advisory record across Red Hat. Compare source-reported impact, fixes and remediation.

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

Red Hat

1 advisory
  • Advisory severityHigh7.5

    High [CVE-2026-11770] pre-auth LDAP filter injection in CleanAllRUV status check

    CVE-2026-11770Source published Source updated

    A flaw was found in 389 Directory Server. An unauthenticated remote attacker can inject LDAP search filters into the CleanAllRUV replication status-check extended operation. Because the handler performs the search against cn=config with elevated replication plugin privileges and returns a boolean match result, the attacker can extract sensitive server configuration metadata, including replication bind DNs and password storage scheme information. Red Hat products with `nsslapd-allow-anonymous-access` enabled by default are particularly susceptible. Red Hat severity: Moderate — CVSS 7.5 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). Weakness: CWE-90.

    Affected products in this advisory
    • Red Hat Directory Server 11.7 E4S for RHEL 8
    • Red Hat Directory Server 11.9 for RHEL 8
    • Red Hat Directory Server 12.2 E4S for RHEL 9
    • Red Hat Directory Server 12.4 E4S for RHEL 9

    14 more entries in the full advisory.

    Source-reported affected versions
    Affected-version details not available in this record.
    Source-reported fixed versions
    • redhat-ds:11-8080020260806114250.f969626e
    • redhat-ds:11-8100020260803140625.37ed7c03
    • redhat-ds:12-9020020260730155601.1674d574
    • redhat-ds:12-9040020260810131422.1674d574

    26 more entries in the full advisory.

    Mitigation guidance
    • Set nsslapd-allow-anonymous-access to rootdse or off. Restrict LDAP ports to trusted networks. Monitor for extop OID 2.16.840.1.113730.3.6.8. Use strong replication manager passwords.

Android app · Google Play

Monitor future Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery