Impact
A null pointer dereference exists in the ipa-enrollment SLAPI plugin, which is triggered by an LDAP extended operation missing the JOIN_OID request value. The flaw causes the IAS server to crash, leading to a denial of service for clients relying on the service. The vulnerability maps to CWE‑476 – Dereference of a Null Pointer, bringing impact primarily to availability rather than confidentiality or integrity.
Affected Systems
Red Hat Enterprise Linux 6, 7, 8, 9, and 10 running the FreeIPA appliance that includes the ipa-enrollment plugin.
Risk and Exploitability
The CVSS score of 6.5 classifies the flaw as medium severity. Attackers must be authenticated to the LDAP service to send the malformed extended operation, which limits the attack scope to users with valid access. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog. Given the need for authentication, the likelihood of widespread exploitation is moderate, but a successful exploit results in an immediate denial of service to affected LDAP clients.
OpenCVE Enrichment