RHSA-2026:56048: Important: redhat-ds:12 security update
Important: redhat-ds:12 security update
Other sources
Red Hat Directory Server is an LDAPv3-compliant directory server. The suite of packages includes the Lightweight Directory Access Protocol (LDAP) server, as well as command-line utilities and Web UI packages for server administration.Security Fix(es): 389-ds-base: 389-ds-base: pre-auth LDAP filter injection in CleanAllRUV status check (CVE-2026-11770) 389-ds-base: 389-ds-base: NULL pointer dereference in deref control plugin BER parser (CVE-2026-11788) 389-ds-base: 389-ds-base: pre-authentication stack buffer overflow in getruvelementfromberval() via unbounded replica ID parsing (CVE-2026-15722) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/389-ds-baseto a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/389-ds-base-debuginfoto a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/389-ds-base-debugsourceto a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/389-ds-base-develto a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/389-ds-base-libsto a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/389-ds-base-libs-debuginfoto a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/389-ds-base-snmpto a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/389-ds-base-snmp-debuginfoto a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/cockpitto a version that resolves this vulnerability.Fixed in 389-ds-2.2.7-17.module+el9d - Upgrade
Upgrade
redhat/python3-lib389to a version that resolves this vulnerability.Fixed in 2.2.7-17.module+el9d - Upgrade
Upgrade
389-ds-baseto a version that resolves this vulnerability.Patch redhat-ds:12
Event History
Frequently Asked Questions
Which deployments should be prioritized for this update?
Systems running Red Hat Directory Server components based on 389-ds-base are in scope, including the LDAP server and related package variants listed in the advisory. The affected issues include pre-authentication flaws, so exposure may exist before an LDAP user authenticates.
What attacker interaction is identified for the listed vulnerabilities?
Two of the listed issues are explicitly pre-authentication: LDAP filter injection in the CleanAllRUV status check and a stack buffer overflow through unbounded replica ID parsing. The deref control plugin issue is a NULL pointer dereference in its BER parser; the advisory does not state the access or configuration conditions required for it.
What can be done if immediate patching is not possible?
The provided advisory does not identify a temporary mitigation, configuration workaround, or detection method. Apply the Red Hat security update for the affected 389-ds-base packages when possible.