UBUNTU-CVE-2026-15722

Source
https://ubuntu.com/security/CVE-2026-15722
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-15722.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2026-15722
Upstream
  • CVE-2026-15722
Published
2026-07-31T10:16:00Z
Modified
2026-08-06T00:12:17Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The getruvelementfromberval() function in repl5ruv.c copies digit characters from a network-supplied RUV berval into a fixed 16-byte stack buffer without bounds checking. A remote unauthenticated attacker can crash the LDAP server by sending a crafted StartNSDS50ReplicationRequest extended operation containing a replica ID field with more than 16 digit characters. The overflow occurs during payload decoding, before any authorization check. Stack protectors limit impact to denial of service.

References

Affected packages

Ubuntu:22.04:LTS
389-ds-base

Package

Name
389-ds-base
Purl
pkg:deb/ubuntu/389-ds-base?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.4.4.11-2build1
1.4.4.11-2build2
1.4.4.17-1
2.*
2.0.11-2
2.0.14-1
2.0.15-1
2.0.15-1ubuntu2

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "389-ds",
            "binary_version": "2.0.15-1ubuntu2"
        },
        {
            "binary_name": "389-ds-base",
            "binary_version": "2.0.15-1ubuntu2"
        },
        {
            "binary_version": "2.0.15-1ubuntu2",
            "binary_name": "389-ds-base-libs"
        },
        {
            "binary_name": "cockpit-389-ds",
            "binary_version": "2.0.15-1ubuntu2"
        },
        {
            "binary_name": "python3-lib389",
            "binary_version": "2.0.15-1ubuntu2"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-15722.json"
Ubuntu:24.04:LTS
389-ds-base

Package

Name
389-ds-base
Purl
pkg:deb/ubuntu/389-ds-base?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.3.4+dfsg1-1
2.4.4+dfsg1-1ubuntu1
2.4.4+dfsg1-1ubuntu4
2.4.4+dfsg1-3
2.4.5+dfsg1-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.4.5+dfsg1-1",
            "binary_name": "389-ds"
        },
        {
            "binary_name": "389-ds-base",
            "binary_version": "2.4.5+dfsg1-1"
        },
        {
            "binary_name": "389-ds-base-libs",
            "binary_version": "2.4.5+dfsg1-1"
        },
        {
            "binary_version": "2.4.5+dfsg1-1",
            "binary_name": "cockpit-389-ds"
        },
        {
            "binary_name": "python3-lib389",
            "binary_version": "2.4.5+dfsg1-1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-15722.json"
Ubuntu:26.04:LTS
389-ds-base

Package

Name
389-ds-base
Purl
pkg:deb/ubuntu/389-ds-base?arch=source&distro=resolute

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.1.2+dfsg1-1
3.1.2+vendor1-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "389-ds",
            "binary_version": "3.1.2+vendor1-2"
        },
        {
            "binary_version": "3.1.2+vendor1-2",
            "binary_name": "389-ds-base"
        },
        {
            "binary_version": "3.1.2+vendor1-2",
            "binary_name": "389-ds-base-libs"
        },
        {
            "binary_name": "cockpit-389-ds",
            "binary_version": "3.1.2+vendor1-2"
        },
        {
            "binary_name": "python3-lib389",
            "binary_version": "3.1.2+vendor1-2"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-15722.json"
Ubuntu:Pro:16.04:LTS
389-ds-base

Package

Name
389-ds-base
Purl
pkg:deb/ubuntu/389-ds-base?arch=source&distro=esm-apps%2Fxenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.3.3.12-1build1
1.3.3.13-1
1.3.4.5-2
1.3.4.8-1
1.3.4.8-3
1.3.4.8-3ubuntu1
1.3.4.8-4
1.3.4.9-1
1.3.4.9-1ubuntu0.1~esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.3.4.9-1ubuntu0.1~esm1",
            "binary_name": "389-ds"
        },
        {
            "binary_name": "389-ds-base",
            "binary_version": "1.3.4.9-1ubuntu0.1~esm1"
        },
        {
            "binary_name": "389-ds-base-libs",
            "binary_version": "1.3.4.9-1ubuntu0.1~esm1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-15722.json"
Ubuntu:Pro:18.04:LTS
389-ds-base

Package

Name
389-ds-base
Purl
pkg:deb/ubuntu/389-ds-base?arch=source&distro=esm-apps%2Fbionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.3.7.5-1
1.3.7.5-1build1
1.3.7.5-1build2
1.3.7.9-1
1.3.7.10-1
1.3.7.10-1ubuntu1
1.3.7.10-1ubuntu1+esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.3.7.10-1ubuntu1+esm1",
            "binary_name": "389-ds"
        },
        {
            "binary_name": "389-ds-base",
            "binary_version": "1.3.7.10-1ubuntu1+esm1"
        },
        {
            "binary_version": "1.3.7.10-1ubuntu1+esm1",
            "binary_name": "389-ds-base-libs"
        },
        {
            "binary_version": "1.3.7.10-1ubuntu1+esm1",
            "binary_name": "python3-dirsrvtests"
        },
        {
            "binary_name": "python3-lib389",
            "binary_version": "1.3.7.10-1ubuntu1+esm1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-15722.json"
Ubuntu:Pro:20.04:LTS
389-ds-base

Package

Name
389-ds-base
Purl
pkg:deb/ubuntu/389-ds-base?arch=source&distro=esm-apps%2Ffocal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.4.1.6-4
1.4.1.6-4build1
1.4.2.4-1
1.4.2.4-1build1
1.4.3.2-1
1.4.3.2-1build1
1.4.3.6-2
1.4.3.6-2ubuntu0.1~esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "389-ds",
            "binary_version": "1.4.3.6-2ubuntu0.1~esm1"
        },
        {
            "binary_name": "389-ds-base",
            "binary_version": "1.4.3.6-2ubuntu0.1~esm1"
        },
        {
            "binary_version": "1.4.3.6-2ubuntu0.1~esm1",
            "binary_name": "389-ds-base-libs"
        },
        {
            "binary_name": "cockpit-389-ds",
            "binary_version": "1.4.3.6-2ubuntu0.1~esm1"
        },
        {
            "binary_name": "python3-lib389",
            "binary_version": "1.4.3.6-2ubuntu0.1~esm1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-15722.json"