- Issued:
- 2026-09-08
- Updated:
- 2026-09-08
RHSA-2026:64793 - Security Advisory
Synopsis
Critical: redhat-ds:11 security, bug fix, and enhancement update
Type/Severity
Security Advisory: Critical
Red Hat Lightspeed patch analysis
Identify and remediate systems affected by this advisory.
Topic
An update for the redhat-ds:11 module is now available for Red Hat Directory Server 11.9 for RHEL 8.
Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
Red Hat Directory Server is an LDAPv3-compliant directory server. The suite of packages includes the Lightweight Directory Access Protocol (LDAP) server, as well as command-line utilities and Web UI packages for server administration.
Additional Changes:
For detailed information on changes in this release, see the Red Hat Directory Server 11.9 for RHEL 8 Release Notes linked from the References section.
Solution
For details on how to apply this update, which includes the changes described in this advisory, refer to:
Affected Products
- Red Hat Directory Server 11.9 x86_64
Fixes
- BZ - 2509186 - CVE-2026-18355 389-ds-base: 389-ds-base: heap buffer overflow via SASL wrapped-record length lower-bound underflow in sasl_io_start_packet()
- BZ - 2509696 - CVE-2026-18453 389-ds-base: 389-ds-base: pre-authentication NULL pointer dereference via paged results and USE_ONE_BACKEND control in op_shared_search
- BZ - 2511388 - CVE-2026-18922 389-ds-base: 389-ds-base: SASL PLAIN authentication allows privilege escalation to Directory Manager via stale identity in Cyrus SASL auxiliary property
- BZ - 2515965 - CVE-2026-19843 389-ds-base: 389-ds-base: Command injection via unescaped LDAP DN in Cockpit 389 Console LDAP editor
- BZ - 2519521 - CVE-2026-76560 389-ds-base: 389-ds: anonymous LDAP client can defeat SELFDN ACI bind-rule checks via empty bind DN
Red Hat Directory Server 11.9
| SRPM | |
|---|---|
| 389-ds-base-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.src.rpm | SHA-256: d0abcb1185fc13e14c01393b52dacdc8a04555c51b06eaa2ad80de133f3879cf |
| x86_64 | |
| 389-ds-base-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: bf3577748d7fb8ea4a54cfd562d9d9bfdf678240972a3736fbae130487dde856 |
| 389-ds-base-debuginfo-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: bfdfa1f1900216f5c6dd12d20ff867a1964f742cd1fd06b16db277bfdea5669e |
| 389-ds-base-debugsource-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: 7ea9b6171ab33eb7914fe37a6df4a847aeabb348701e0195c9d598a0b7e7f6dc |
| 389-ds-base-devel-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: 6bbfc64b838ba4dbb29afafb16bd2ff51d83bb622a7a436f8f4964a5c5f3de79 |
| 389-ds-base-legacy-tools-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: 1b0eae41e5e62e66f24d3383a842aa4d1878bb13a5a4c1ce1b891db11eece701 |
| 389-ds-base-legacy-tools-debuginfo-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: bb562c66769eb650e3f4a5f449a52c4e1e0782f4bf41f77b87ba640552b1824e |
| 389-ds-base-libs-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: 9a0149c58148847ea0aaee92db21633fb027fa17fee8c141489665e0081b20d1 |
| 389-ds-base-libs-debuginfo-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: 080f2614c09139d9c26678435527a1163126353428374660970563a450c55584 |
| 389-ds-base-snmp-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: 11b03a9867e16512b1380798207bead41b04e3a102954f9ccc3ad5774057ac2b |
| 389-ds-base-snmp-debuginfo-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.x86_64.rpm | SHA-256: c4fcd2edd16aae825722441bb2ebe50540ce6ec90cede3c36deacbdd021d544e |
| cockpit-389-ds-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.noarch.rpm | SHA-256: f154ebf2bfc63a236b80ea1b066c993a2e2f762bf0bd8224853d256e554d0f1d |
| python3-lib389-1.4.3.39-28.module+el8dsrv+24826+9ffa737d.noarch.rpm | SHA-256: 46878d26b16c5007cbc0bbcb363133c1f37bc007d562cd84d020dc54f643b66d |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.