RHSA-2026:56047: Important: redhat-ds:11 security update
Important: redhat-ds:11 security update
Other sources
Red Hat Directory Server is an LDAPv3-compliant directory server. The suite of packages includes the Lightweight Directory Access Protocol (LDAP) server, as well as command-line utilities and Web UI packages for server administration.Security Fix(es): 389-ds-base: 389-ds-base: pre-auth LDAP filter injection in CleanAllRUV status check (CVE-2026-11770) 389-ds-base: 389-ds-base: NULL pointer dereference in deref control plugin BER parser (CVE-2026-11788) 389-ds-base: 389-ds-base: pre-authentication stack buffer overflow in getruvelementfromberval() via unbounded replica ID parsing (CVE-2026-15722) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/389-ds-baseto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-debuginfoto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-debugsourceto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-develto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-legacy-toolsto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-legacy-tools-debuginfoto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-libsto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-libs-debuginfoto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-snmpto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/389-ds-base-snmp-debuginfoto a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/cockpitto a version that resolves this vulnerability.Fixed in 389-ds-1.4.3.34-17.module+el8d - Upgrade
Upgrade
redhat/python3-lib389to a version that resolves this vulnerability.Fixed in 1.4.3.34-17.module+el8d - Upgrade
Upgrade
389-ds-baseto a version that resolves this vulnerability.Patch redhat-ds:11
Event History
Frequently Asked Questions
Which installed packages should be considered when identifying systems affected by this update?
The affected software list includes 389-ds-base and related libraries, development, legacy-tools, debug, and debuginfo packages. The advisory describes vulnerabilities in 389-ds-base components.
Do any of the documented issues occur before LDAP authentication?
Two issues are explicitly described as pre-authentication: LDAP filter injection in the CleanAllRUV status check and a stack buffer overflow caused by unbounded replica ID parsing. This indicates those attack paths occur before authentication.
Is the deref control plugin involved in one of the fixes?
The update addresses a NULL pointer dereference in the deref control plugin BER parser. The provided advisory does not specify the resulting impact beyond identifying the flaw type.