| Summary | The fix for CVE-2024-2199 in 389-ds-base was insufficient to cover all scenarios. In certain product versions, an authenticated user may cause a server crash while modifying `userPassword` using malformed input. |
|---|---|
| Publication Date | Sept. 6, 2024, 12:15 a.m. |
| Registration Date | Sept. 6, 2024, 5 a.m. |
| Last Update | Oct. 1, 2024, 3:15 p.m. |