CVE-2018-10871: High severity red hat 389 directory server vulnerability
389-ds-base before versions 1.3.8.5, 1.4.0.12 is vulnerable to a Cleartext Storage of Sensitive Information. By default, when the Replica and/or retroChangeLog plugins are enabled, 389-ds-base stores passwords in plaintext format in their respective changelog files. An attacker with sufficiently high privileges, such as root or Directory Manager, can query these files in order to retrieve plaintext passwords.
Other sources
By default, when the Replica and/or retroChangeLog plugins are enabled, 389-ds-base stores password in plaintext format in their respective changelog files.
An attacker with sufficiently high privileges, such as root or Directory Manager, can query these files in order to retrieve plaintext passwords.
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2018-10871.
What is the severity level of CVE-2018-10871?
The severity level of CVE-2018-10871 is high (7.2).
Which software versions are affected by this vulnerability?
This vulnerability affects 389-ds-base versions 1.3.8.5 and 1.4.0.0 to 1.4.0.11.
How does this vulnerability impact the affected software?
This vulnerability allows an attacker to obtain sensitive information stored in plaintext format in changelog files.
Are there any patches or updates available to fix this vulnerability?
Yes, patches are available to fix this vulnerability. Please refer to the references for more information.