Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:5597 - Security Advisory
Issued:
2026-03-24
Updated:
2026-03-24

RHSA-2026:5597 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: 389-ds-base security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for 389-ds-base is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

389 Directory Server is an LDAP version 3 (LDAPv3) compliant server. The base packages include the Lightweight Directory Access Protocol (LDAP) server and command-line utilities for server administration.

Security Fix(es):

  • 389-ds-base: 389-ds-base: Remote Code Execution and Denial of Service via heap buffer overflow (CVE-2025-14905)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2423624 - CVE-2025-14905 389-ds-base: 389-ds-base: Remote Code Execution and Denial of Service via heap buffer overflow

CVEs

  • CVE-2025-14905

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
389-ds-base-2.0.14-5.el9_0.src.rpm SHA-256: 0b3cb4246009ea748431035817604fcaf5140a1f4a9b42551a0c36f00ce17e15
ppc64le
389-ds-base-2.0.14-5.el9_0.ppc64le.rpm SHA-256: c8eb336b3e6309c6ff799ec19e6dd130851caa6f877d7cbbccc28a6ad825f6b2
389-ds-base-debuginfo-2.0.14-5.el9_0.ppc64le.rpm SHA-256: b9ce35afc69fcb2009ddba9b1b14b9cb01f964eebf2c27c7d901aa2aaa98ff0e
389-ds-base-debugsource-2.0.14-5.el9_0.ppc64le.rpm SHA-256: fce1dfd7574e57e78ea67700dbac8cfac991642ba8622260c8888a48691aec32
389-ds-base-libs-2.0.14-5.el9_0.ppc64le.rpm SHA-256: dd3eae2cd5f2067c4c28ed951d212534dbc85dee277cc302bc792cd493812fde
389-ds-base-libs-debuginfo-2.0.14-5.el9_0.ppc64le.rpm SHA-256: 3520a147adc5c651a146246b72edd4f9bd950ebcae71fb385666c6534f77ea0b
389-ds-base-snmp-debuginfo-2.0.14-5.el9_0.ppc64le.rpm SHA-256: 16a55ffc59e43968513801eee2192844164217456c548ddc72b8b47ab94862ae
python3-lib389-2.0.14-5.el9_0.noarch.rpm SHA-256: c5eab59bcc43174f239e35d3a80238c3cce7c15c78bd43e0933a124e2bc48e6b

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
389-ds-base-2.0.14-5.el9_0.src.rpm SHA-256: 0b3cb4246009ea748431035817604fcaf5140a1f4a9b42551a0c36f00ce17e15
x86_64
389-ds-base-2.0.14-5.el9_0.x86_64.rpm SHA-256: 155c3fd44e616d238ff2f0e6cdbd8c1e6fe3904f653ff3b875b4f5dad641031c
389-ds-base-debuginfo-2.0.14-5.el9_0.x86_64.rpm SHA-256: 30c5a6ed6665e1b2fd7cddd4767c43e92ffb176be6a4098bd5e66a50f34dd137
389-ds-base-debugsource-2.0.14-5.el9_0.x86_64.rpm SHA-256: e85baeceb76f0b131c6155e6d80b4f996cea0c40efabc236d48ee42d8411452a
389-ds-base-libs-2.0.14-5.el9_0.x86_64.rpm SHA-256: 2e870cbf9aea670c36f175dadfa34d502dae9b562f6e91b5971d907d7533a273
389-ds-base-libs-debuginfo-2.0.14-5.el9_0.x86_64.rpm SHA-256: 48251da657d96ca2bb4945201afcbf2a5a0d2703f2ad5696f0e180fc3eb6c1ec
389-ds-base-snmp-debuginfo-2.0.14-5.el9_0.x86_64.rpm SHA-256: 5b62cbc26f2e9e4c8763d592452b4f2a2922bcb19b8a224dfc5f424f4faa5c3c
python3-lib389-2.0.14-5.el9_0.noarch.rpm SHA-256: c5eab59bcc43174f239e35d3a80238c3cce7c15c78bd43e0933a124e2bc48e6b

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
389-ds-base-2.0.14-5.el9_0.src.rpm SHA-256: 0b3cb4246009ea748431035817604fcaf5140a1f4a9b42551a0c36f00ce17e15
aarch64
389-ds-base-2.0.14-5.el9_0.aarch64.rpm SHA-256: 2d3df09e4e6ac94fef53b4ed52e60cb0432509ad929eebdfd4fab2ee6e0bbc4e
389-ds-base-debuginfo-2.0.14-5.el9_0.aarch64.rpm SHA-256: 9e852e8994612aac2a38ea1c17015b0e4fa2692431cc8cd9386ccddffe892838
389-ds-base-debugsource-2.0.14-5.el9_0.aarch64.rpm SHA-256: 81ea50ce4856b835256e0f505edcf486447a0dfcc97078487facff1beb5d3756
389-ds-base-libs-2.0.14-5.el9_0.aarch64.rpm SHA-256: 62866cc7043df269c9b27d6e5413b926bdfb5ff7eafae5c494c2353391e5001f
389-ds-base-libs-debuginfo-2.0.14-5.el9_0.aarch64.rpm SHA-256: 5f77891e6b58390ed52c7d204ff1fc752dcc016fae579e0888f5ada1cf6b83d8
389-ds-base-snmp-debuginfo-2.0.14-5.el9_0.aarch64.rpm SHA-256: 12bb4c3930073840c4b74633f9f737e188718ef1de86a816e92847b66bff6dcb
python3-lib389-2.0.14-5.el9_0.noarch.rpm SHA-256: c5eab59bcc43174f239e35d3a80238c3cce7c15c78bd43e0933a124e2bc48e6b

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
389-ds-base-2.0.14-5.el9_0.src.rpm SHA-256: 0b3cb4246009ea748431035817604fcaf5140a1f4a9b42551a0c36f00ce17e15
s390x
389-ds-base-2.0.14-5.el9_0.s390x.rpm SHA-256: c8b96b96c33078049cb332430edf1fa128f3b69814a39bfc197e4caece76f899
389-ds-base-debuginfo-2.0.14-5.el9_0.s390x.rpm SHA-256: 7ec256cb0062dcac7e99d9f79bd386ee3f05598e79f832ccddf0a46690bee6a4
389-ds-base-debugsource-2.0.14-5.el9_0.s390x.rpm SHA-256: 6d3079d0d41cd7d32724d25cbe8ec9d565ebbf38f32c2797257eddd5e499b1e4
389-ds-base-libs-2.0.14-5.el9_0.s390x.rpm SHA-256: 9076b5708fc92fbbd36438fdf0633d9f575530e0eced511af4909cd7554c72c5
389-ds-base-libs-debuginfo-2.0.14-5.el9_0.s390x.rpm SHA-256: 8faab1946bf386eeaf6545919771e35bc390baea8dd146c16a9e74aa0ddc83a6
389-ds-base-snmp-debuginfo-2.0.14-5.el9_0.s390x.rpm SHA-256: 5c680bd9319c10d77366775c66d1b485e12380216d74845bfa079284284a5819
python3-lib389-2.0.14-5.el9_0.noarch.rpm SHA-256: c5eab59bcc43174f239e35d3a80238c3cce7c15c78bd43e0933a124e2bc48e6b

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility