Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:3189 - Security Advisory
Issued:
2026-02-24
Updated:
2026-02-24

RHSA-2026:3189 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: 389-ds-base security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for 389-ds-base is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

389 Directory Server is an LDAP version 3 (LDAPv3) compliant server. The base packages include the Lightweight Directory Access Protocol (LDAP) server and command-line utilities for server administration.

Security Fix(es):

  • 389-ds-base: 389-ds-base: Remote Code Execution and Denial of Service via heap buffer overflow (CVE-2025-14905)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64
  • Red Hat CodeReady Linux Builder for x86_64 9 x86_64
  • Red Hat CodeReady Linux Builder for Power, little endian 9 ppc64le
  • Red Hat CodeReady Linux Builder for ARM 64 9 aarch64
  • Red Hat CodeReady Linux Builder for IBM z Systems 9 s390x

Fixes

  • BZ - 2423624 - CVE-2025-14905 389-ds-base: 389-ds-base: Remote Code Execution and Denial of Service via heap buffer overflow

CVEs

  • CVE-2025-14905

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 9

SRPM
389-ds-base-2.7.0-10.el9_7.src.rpm SHA-256: 130d3220fb3af373a1a32425257e00b730f0d57b1d8510655e8f982be1c7ce79
x86_64
389-ds-base-2.7.0-10.el9_7.x86_64.rpm SHA-256: 0e52bae39c47897de0d317bc591c63b49db235e6ab6b46f65cd7d4d048705303
389-ds-base-debuginfo-2.7.0-10.el9_7.x86_64.rpm SHA-256: 50fc2fe12a74434ce5d712c3b35071a1266df58924ef8a7b689a9099d4a58821
389-ds-base-debugsource-2.7.0-10.el9_7.x86_64.rpm SHA-256: fa31f05047174165c3ed5778dc8214dc179099fbe6f3e96cb28886d7b23e4466
389-ds-base-libs-2.7.0-10.el9_7.x86_64.rpm SHA-256: 1257005337cabc73fe1eec008af84d3ad4e7347859c0949c40bd4d0eb1bbec09
389-ds-base-libs-debuginfo-2.7.0-10.el9_7.x86_64.rpm SHA-256: 2a1d705ebb719b778c6337f8a0192a0e583beffa19a9e2c56c8f7819e4c408f9
389-ds-base-snmp-2.7.0-10.el9_7.x86_64.rpm SHA-256: d1eb3138bc77124e88892102bbd3001c11d06fff5260050cd24291763fac9f3f
389-ds-base-snmp-debuginfo-2.7.0-10.el9_7.x86_64.rpm SHA-256: 676cdbe7121ebf5515c6b1c96d67404c1aed248ed83a54f8b4c21b0b4a891173
python3-lib389-2.7.0-10.el9_7.noarch.rpm SHA-256: 32fdef67fdeb4be4acba8cdedd35cae525db8746a6110eb15672ec518a35e8f4

Red Hat Enterprise Linux for IBM z Systems 9

SRPM
389-ds-base-2.7.0-10.el9_7.src.rpm SHA-256: 130d3220fb3af373a1a32425257e00b730f0d57b1d8510655e8f982be1c7ce79
s390x
389-ds-base-2.7.0-10.el9_7.s390x.rpm SHA-256: dc3891d3b06432874f423adf04f7261cda956f21f60e873c36d230cd2e237dfc
389-ds-base-debuginfo-2.7.0-10.el9_7.s390x.rpm SHA-256: 3c3df52c54c9dce6ce68b2fd959740eb3e92031f33e1d7a5de6507c37841a3e2
389-ds-base-debugsource-2.7.0-10.el9_7.s390x.rpm SHA-256: 2c8515326faf0eec8d7b1546517eb018bc85c1c6fbc5a6a34b9a50edc62e980b
389-ds-base-libs-2.7.0-10.el9_7.s390x.rpm SHA-256: 56e9db96eb76664ec41f21e866ac4217d081a86441a4c2a6ffbdb244774e3ce0
389-ds-base-libs-debuginfo-2.7.0-10.el9_7.s390x.rpm SHA-256: 81e0092da9b58ad5f0af5e255b5ab70837246a967078d4f27a107b9500f42175
389-ds-base-snmp-2.7.0-10.el9_7.s390x.rpm SHA-256: 72b13d5c458409484f621b6dc04f396a9b07a65a8f9b9c047e1395cc700b3641
389-ds-base-snmp-debuginfo-2.7.0-10.el9_7.s390x.rpm SHA-256: a526deb2b111a3bfc2d6a316232deb1d03a9cc14d02f670ffc86811837c9f350
python3-lib389-2.7.0-10.el9_7.noarch.rpm SHA-256: 32fdef67fdeb4be4acba8cdedd35cae525db8746a6110eb15672ec518a35e8f4

Red Hat Enterprise Linux for Power, little endian 9

SRPM
389-ds-base-2.7.0-10.el9_7.src.rpm SHA-256: 130d3220fb3af373a1a32425257e00b730f0d57b1d8510655e8f982be1c7ce79
ppc64le
389-ds-base-2.7.0-10.el9_7.ppc64le.rpm SHA-256: 277ebe6a6695de29375675d3946db28ff72cdb66f1cbde8d6f8a5ad16075add1
389-ds-base-debuginfo-2.7.0-10.el9_7.ppc64le.rpm SHA-256: 7c0d4f535e56c827c2cffe17cd293fc416ae3db93e35f25dae181c3e25bd4f87
389-ds-base-debugsource-2.7.0-10.el9_7.ppc64le.rpm SHA-256: 89e8a22abd03724b0c46bb39556b73a6a7c88dda11dc00083fb6512acd621df0
389-ds-base-libs-2.7.0-10.el9_7.ppc64le.rpm SHA-256: 73ca0616623a454e49874e59bd45b894f0fe9b26e42468a713cefedeb825537d
389-ds-base-libs-debuginfo-2.7.0-10.el9_7.ppc64le.rpm SHA-256: eb066cdcc885c1b5c9da93e7b941e4469a963ecf57005cb60fb82de8f3b2716f
389-ds-base-snmp-2.7.0-10.el9_7.ppc64le.rpm SHA-256: 884e4a5616c9f8dbdd301d0603b4952b5b14da6fc75d3dc56b19c34aa568ec8f
389-ds-base-snmp-debuginfo-2.7.0-10.el9_7.ppc64le.rpm SHA-256: aafef656cc0bbbaadfeba10e4502b49558effc6d024a869086029613daf96889
python3-lib389-2.7.0-10.el9_7.noarch.rpm SHA-256: 32fdef67fdeb4be4acba8cdedd35cae525db8746a6110eb15672ec518a35e8f4

Red Hat Enterprise Linux for ARM 64 9

SRPM
389-ds-base-2.7.0-10.el9_7.src.rpm SHA-256: 130d3220fb3af373a1a32425257e00b730f0d57b1d8510655e8f982be1c7ce79
aarch64
389-ds-base-2.7.0-10.el9_7.aarch64.rpm SHA-256: 987ff8790e25a2365b6194843005d5589269e2cc755521a16da830971bfb324c
389-ds-base-debuginfo-2.7.0-10.el9_7.aarch64.rpm SHA-256: e8969235eb0b70a033f444ae6e2949d8f99bd5a1d53b8708443f23854b86dfba
389-ds-base-debugsource-2.7.0-10.el9_7.aarch64.rpm SHA-256: 7394aec6c0820b8208e013e9f6ec2a82fcf0d00232007fbddf072c1fae599362
389-ds-base-libs-2.7.0-10.el9_7.aarch64.rpm SHA-256: d1270b3930f3cb97e7f2e418f335399ce9ee1997eea038187c3dea4597214f06
389-ds-base-libs-debuginfo-2.7.0-10.el9_7.aarch64.rpm SHA-256: d01cb3698ebd19664bc13409f39c70472ba17c17631b115b7ad7e12de0422c44
389-ds-base-snmp-2.7.0-10.el9_7.aarch64.rpm SHA-256: 3c4343cdbca5dfca7750c3733705bcb9fdfc80ebd3ad6061c002803415ff2d5e
389-ds-base-snmp-debuginfo-2.7.0-10.el9_7.aarch64.rpm SHA-256: 36e4bb1c17142bfb1a99e81eeb6d09e0ce6d3e724770c464799f345719099acd
python3-lib389-2.7.0-10.el9_7.noarch.rpm SHA-256: 32fdef67fdeb4be4acba8cdedd35cae525db8746a6110eb15672ec518a35e8f4

Red Hat CodeReady Linux Builder for x86_64 9

SRPM
x86_64
389-ds-base-debuginfo-2.7.0-10.el9_7.x86_64.rpm SHA-256: 50fc2fe12a74434ce5d712c3b35071a1266df58924ef8a7b689a9099d4a58821
389-ds-base-debugsource-2.7.0-10.el9_7.x86_64.rpm SHA-256: fa31f05047174165c3ed5778dc8214dc179099fbe6f3e96cb28886d7b23e4466
389-ds-base-devel-2.7.0-10.el9_7.x86_64.rpm SHA-256: 4c79a09453b9ea2169ec883aef37c01b7e51be6cb32a03a1ccfc6919142d76e1
389-ds-base-libs-debuginfo-2.7.0-10.el9_7.x86_64.rpm SHA-256: 2a1d705ebb719b778c6337f8a0192a0e583beffa19a9e2c56c8f7819e4c408f9
389-ds-base-snmp-debuginfo-2.7.0-10.el9_7.x86_64.rpm SHA-256: 676cdbe7121ebf5515c6b1c96d67404c1aed248ed83a54f8b4c21b0b4a891173

Red Hat CodeReady Linux Builder for Power, little endian 9

SRPM
ppc64le
389-ds-base-debuginfo-2.7.0-10.el9_7.ppc64le.rpm SHA-256: 7c0d4f535e56c827c2cffe17cd293fc416ae3db93e35f25dae181c3e25bd4f87
389-ds-base-debugsource-2.7.0-10.el9_7.ppc64le.rpm SHA-256: 89e8a22abd03724b0c46bb39556b73a6a7c88dda11dc00083fb6512acd621df0
389-ds-base-devel-2.7.0-10.el9_7.ppc64le.rpm SHA-256: 3b1abe5050a6a2baee988419201aef487e0583d383785758d4220d276c55307b
389-ds-base-libs-debuginfo-2.7.0-10.el9_7.ppc64le.rpm SHA-256: eb066cdcc885c1b5c9da93e7b941e4469a963ecf57005cb60fb82de8f3b2716f
389-ds-base-snmp-debuginfo-2.7.0-10.el9_7.ppc64le.rpm SHA-256: aafef656cc0bbbaadfeba10e4502b49558effc6d024a869086029613daf96889

Red Hat CodeReady Linux Builder for ARM 64 9

SRPM
aarch64
389-ds-base-debuginfo-2.7.0-10.el9_7.aarch64.rpm SHA-256: e8969235eb0b70a033f444ae6e2949d8f99bd5a1d53b8708443f23854b86dfba
389-ds-base-debugsource-2.7.0-10.el9_7.aarch64.rpm SHA-256: 7394aec6c0820b8208e013e9f6ec2a82fcf0d00232007fbddf072c1fae599362
389-ds-base-devel-2.7.0-10.el9_7.aarch64.rpm SHA-256: 1f4dfa313118f27f9b000aa7f8f48ad304d08c3af39590dc40122ac4f234e1a9
389-ds-base-libs-debuginfo-2.7.0-10.el9_7.aarch64.rpm SHA-256: d01cb3698ebd19664bc13409f39c70472ba17c17631b115b7ad7e12de0422c44
389-ds-base-snmp-debuginfo-2.7.0-10.el9_7.aarch64.rpm SHA-256: 36e4bb1c17142bfb1a99e81eeb6d09e0ce6d3e724770c464799f345719099acd

Red Hat CodeReady Linux Builder for IBM z Systems 9

SRPM
s390x
389-ds-base-debuginfo-2.7.0-10.el9_7.s390x.rpm SHA-256: 3c3df52c54c9dce6ce68b2fd959740eb3e92031f33e1d7a5de6507c37841a3e2
389-ds-base-debugsource-2.7.0-10.el9_7.s390x.rpm SHA-256: 2c8515326faf0eec8d7b1546517eb018bc85c1c6fbc5a6a34b9a50edc62e980b
389-ds-base-devel-2.7.0-10.el9_7.s390x.rpm SHA-256: 4c01a475c79a2eeb382510984b3116a90901dd3d367d6aca46619f430181761a
389-ds-base-libs-debuginfo-2.7.0-10.el9_7.s390x.rpm SHA-256: 81e0092da9b58ad5f0af5e255b5ab70837246a967078d4f27a107b9500f42175
389-ds-base-snmp-debuginfo-2.7.0-10.el9_7.s390x.rpm SHA-256: a526deb2b111a3bfc2d6a316232deb1d03a9cc14d02f670ffc86811837c9f350

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility