Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2026:2417-1

Опубликовано: 16 июн. 2026
Источник: suse-cvrf

Описание

Security update for 389-ds

This update for 389-ds fixes the following issue

Update to 2.2.10~git229.1fa7ffdb4:

  • CVE-2026-9064: unbounded LDAP controls count in get_ldapmessage_controls_ext() can lead to amplified CPU time and heap allocation and a denial of service (bsc#1265898).

Changelog:

  • Issue 7503 - CVE-2026-9064 - Add a limit to the number controls per operation
  • Issue 7457 - Refactor memberOf perf test (#7458)
  • Issue 7431 - password policy - passwordBadWords is ignored in local policies
  • Issue 7417 - UI - global password policy syntax settings missing passwordMaxRepeats
  • Issue 3555 - UI - Fix audit issue with npm - brace-expansion (#7411)
  • Issue 7088 - Change log level for 'Can't locate CSN' error message
  • Issue 7423 - cleanup pblock after freeing pre/post entries
  • Issue 7418 - Use-after-free in deferred memberof (#7419)
  • Issue 7277 - UI - Fix Japanese translation errors errors in Cockpit UI (#7386)
  • Issue 7126 - WARN - keys2idl - received NULL idl from index_read_ext_allids (#7127)
  • Issue 7370 - Runtime LSan/TSan injection for pytest (#7371)
  • Issue 7378 - Make sure suffix entry always gets assigned ID 1
  • Issue 7380 - Internal op with negative wtime and large optime (#7381)
  • Issue 7362 - UI - Some FormSelect onChange parameters are reversed
  • Issue 7368 - UI - global password policy page is missing passwordmintokenlength
  • Issue 7366 - Memory leaks in syncrepl plugin during persistent search operations (#7367)
  • Issue 7284 - CI - Fix test_grace_limit_section after pwpolicy validation fix (#7357)
  • Issue 3555 - UI - Fix audit issue with npm - flatted, picomatch (#7364)
  • Issue 1704 - DNA plugin creates invalid shared config entry with port 0 (#7352)
  • Issue 6753 - Removing ticket 477828 test and porting to DSLdapObject (#6989)
  • Issue 7342 - CI - repl config regression (#7343)
  • Issue 7319 - Action menu for certificates remains in empty certificate list (#7320)
  • Issue 6868 - UI - schema attribute table expansion break after moving to a new page
  • Issue 7093 - A password policy can be created even when an identical policy already exists (#7283)
  • Issue 7233 - test_produce_division_by_zero fails with IsADirectoryError in conftest.py (#7234)
  • Issue 7152 - ns-slapd fails to shutdown when deferred memberof update is in progress (#7187)
  • Issue 3555 - UI - Fix audit issue with npm - ajv, minimatch (#7298)
  • Issue 7291 - Crash when configuring a replica with an incorrect nsds5ReplicaRoot (#7292)
  • Issue 7284 - Creating local password policy succeeds with incorrect passwordInHistory value (#7285)

Список пакетов

SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS
389-ds-2.2.10~git229.1fa7ffdb4-150500.3.45.1
389-ds-devel-2.2.10~git229.1fa7ffdb4-150500.3.45.1
lib389-2.2.10~git229.1fa7ffdb4-150500.3.45.1
libsvrcore0-2.2.10~git229.1fa7ffdb4-150500.3.45.1
SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS
389-ds-2.2.10~git229.1fa7ffdb4-150500.3.45.1
389-ds-devel-2.2.10~git229.1fa7ffdb4-150500.3.45.1
lib389-2.2.10~git229.1fa7ffdb4-150500.3.45.1
libsvrcore0-2.2.10~git229.1fa7ffdb4-150500.3.45.1
SUSE Linux Enterprise Server 15 SP5-LTSS
389-ds-2.2.10~git229.1fa7ffdb4-150500.3.45.1
389-ds-devel-2.2.10~git229.1fa7ffdb4-150500.3.45.1
lib389-2.2.10~git229.1fa7ffdb4-150500.3.45.1
libsvrcore0-2.2.10~git229.1fa7ffdb4-150500.3.45.1
SUSE Linux Enterprise Server for SAP Applications 15 SP5
389-ds-2.2.10~git229.1fa7ffdb4-150500.3.45.1
389-ds-devel-2.2.10~git229.1fa7ffdb4-150500.3.45.1
lib389-2.2.10~git229.1fa7ffdb4-150500.3.45.1
libsvrcore0-2.2.10~git229.1fa7ffdb4-150500.3.45.1

Описание

A flaw was found in 389-ds-base. The get_ldapmessage_controls_ext() function in the LDAP server does not enforce an upper bound on the number of controls per LDAP message. A remote, unauthenticated attacker can send a specially crafted LDAP request containing hundreds of thousands of minimal controls within the default maximum BER message size (2 MB), causing excessive CPU consumption and heap allocation on the server. Under concurrent exploitation, this leads to significant latency degradation, worker thread starvation, or out-of-memory termination, resulting in a denial of service.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS:389-ds-2.2.10~git229.1fa7ffdb4-150500.3.45.1
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS:389-ds-devel-2.2.10~git229.1fa7ffdb4-150500.3.45.1
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS:lib389-2.2.10~git229.1fa7ffdb4-150500.3.45.1
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS:libsvrcore0-2.2.10~git229.1fa7ffdb4-150500.3.45.1

Ссылки