SUSE SLES15 Security Update : 389-ds (SUSE-SU-2026:3678-1)

medium Nessus Plugin ID 338824

Synopsis

The remote SUSE host is missing one or more security updates.

Description

The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:3678-1 advisory.

- CVE-2026-11774: integer overflow in SASL packet length bypasses size limit leading to heap buffer overflow (bsc#1268298).
- CVE-2026-11785: type confusion in the SSO token handler can cause partial stack address information disclosure (bsc#1268065).
- CVE-2026-11786: lack of length check can cause an out-of-bound read (bsc#1268064).
- CVE-2026-11791: schema reload triggered during concurrent LDAP query traffic can lead to a use-after- free (bsc#1268047).

Changes for 389-ds:

- Update to version 2.7.0~git234.0afa2e38b:
* Issue 7711 - Fix typo in accountpolicy --login-history-size help text (#7713)
* Issue 7688 - BUG - partial address leak in sso token (#7689)
* Issue 7705 - With memberOfEntryScope set, deferred memberOf skips MODIFY operations (#7706)
* Issue 7714 - UI - sass import rules are deprecated
* Issue 7658 - Heap Buffer Overflow in sasl_io_recv() via Padded SASL UNBIND
* Issue 7710 - MemberOf deferred update - Use condvar instead of sleep loop
* Issue 7637 - fix cherry-pick error
* Issue 7637 - UI - Using Arrow Keys in New Object Wizard Resulted in DOM Reload
* Issue 7578 - schema - attribute refcount is not maintained properly
* Issue 7605 - Harden CI test ports against ephemeral allocation (#7692)
* Issue 7528 - Retry the CI image pull instead of failing the job (#7691)
* Issue 7460 - MOD_REPLACE on groups/link attributes modifies overlap targets (#7461)
* Issue 7670 - BDB range searches intermittently fail with err=1 under write load (#7671)
* Issue 7108 - Fix shutdown crash in entry cache destruction (#7163)
* Issue 7284 - Creating local password policy succeeds with incorrect passwordInHistory value (#7662)
* Issue 7284 - Automated test for creating local password policy with incorrect passwordInHistory value (#7608)
* Issue 7519 - Ignore obsolete entrydn index when entryrdn is enabled (#7526)
* Issue 7611 - Preserve legacy PBKDF2 hash compatibility (#7649)
* Issue 7547 - Heap buffer overflow in ldap_utf8prev()
* Issue 7611 - PBKDF2 password verification should reject invalid iteration count (#7613)
* Issue 7558 - Total init sends the suffix entry twice (#7640)
* Issue 7635 - Integer Underflow in {SMD5} Password Comparison (#7636)

Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected 389-ds, 389-ds-devel, lib389 and / or libsvrcore0 packages.

See Also

https://bugzilla.suse.com/1268047

https://bugzilla.suse.com/1268064

https://bugzilla.suse.com/1268065

https://bugzilla.suse.com/1268298

https://lists.suse.com/pipermail/sle-updates/2026-August/049423.html

https://www.suse.com/security/cve/CVE-2026-11774

https://www.suse.com/security/cve/CVE-2026-11785

https://www.suse.com/security/cve/CVE-2026-11786

https://www.suse.com/security/cve/CVE-2026-11791

Plugin Details

Severity: Medium

ID: 338824

File Name: suse_SU-2026-3678-1.nasl

Version: 1.1

Type: Local

Agent: unix

Published: 8/22/2026

Updated: 8/22/2026

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.9

Percentile: 52.66

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5

Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:N/A:N

CVSS Score Source: CVE-2026-11786

CVSS v3

Risk Factor: Medium

Base Score: 6.5

Temporal Score: 5.7

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:novell:suse_linux:15, p-cpe:/a:novell:suse_linux:389-ds-devel, p-cpe:/a:novell:suse_linux:389-ds, p-cpe:/a:novell:suse_linux:lib389, p-cpe:/a:novell:suse_linux:libsvrcore0

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 8/21/2026

Vulnerability Publication Date: 6/9/2026

Reference Information

CVE: CVE-2026-11774, CVE-2026-11785, CVE-2026-11786, CVE-2026-11791

SuSE: SUSE-SU-2026:3678-1