In versions 3.1.0 and lower of the Splunk Supporting Add-on for Active Directory, also known as SA-ldapsearch, a vulnerable regular expression pattern could lead to a Regular Expression Denial of Service (ReDoS) attack.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://advisory.splunk.com/advisories/SVD-2025-0103 |
![]() ![]() |
History
Wed, 12 Feb 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 30 Jan 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In versions 3.1.0 and lower of the Splunk Supporting Add-on for Active Directory, also known as SA-ldapsearch, a vulnerable regular expression pattern could lead to a Regular Expression Denial of Service (ReDoS) attack. | |
Title | Regular Expression Denial of Service (ReDoS) in Splunk Supporting Add-on for Active Directory (SA-ldapsearch) | |
Weaknesses | CWE-1333 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Splunk
Published:
Updated: 2025-02-12T19:51:11.515Z
Reserved: 2025-01-09T19:59:58.665Z
Link: CVE-2025-0367

Updated: 2025-02-12T19:44:38.152Z

Status : Received
Published: 2025-01-30T17:15:18.097
Modified: 2025-01-30T17:15:18.097
Link: CVE-2025-0367

No data.