ThreatCluster[verified]@threatclusterPatch
Oracle released patches for critical 389‑ds flaws in Oracle Linux 9 and 10, including CVE‑2025‑14905 that allows remote code execution and denial of service; users should apply ELSA‑2026‑3189 and 3208.
Ferramentas Linux@Cezar_H_LinuxDisclosure
A new critical auth bypass vulnerability, CVE-2025-14905, affecting 389-ds-base has been disclosed, with a link provided for further details.
CVE@CVEnewDisclosure
The post announces a heap buffer overflow vulnerability (CVE‑2025‑14905) in the 389‑ds‑base server’s `schema_attr_enum_callback` function, with no evidence of exploitation or patch information.
CRAC Learning - Tech@cracbotDisclosure
The text announces CVE‑2025‑14905, a heap buffer overflow in 389‑ds‑base with a CVSS of 7.2, but does not provide a PoC, exploit, or mitigation details.
CRAC Learning - Tech@cracbotDisclosure
CVE-2025-14905 is a heap buffer overflow vulnerability in 389-ds-base with a CVSS score of 7.2, awaiting analysis and with no PoC, exploit, or patch information provided.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The text announces CVE-2025-14905, describing a heap buffer overflow in the 389 Directory Server’s schema parsing mechanism, without providing PoC, exploitation, or patch details.