Security Advisory

CVE-2026-73198

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-20 10:39:00
Last updated 2026-08-20 15:38:29
Assigner redhat
CVSS score 7.5
State PUBLISHED

Description

A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `/ipa/i18n_messages` endpoint by sending an arbitrarily large request body. This can cause the service to consume excessive memory, leading to memory exhaustion, degraded responsiveness, and a denial of service (DoS) condition.