Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…
EPSS 0.8%top 46%

Red Hat Security Advisory: Red Hat Directory Server 13.2 container image update

0
High
Published: 06/18/2026 (06/18/2026, 16:23:30 UTC)
Source: GCVE Database
Vendor/Project: Red Hat Product Security
Product: Red Hat

Description

Red Hat Directory Server 13.2 container image for RHEL 10 has a security vulnerability identified as CVE-2026-9064. This vulnerability is addressed by an updated container image released by Red Hat. The issue relates to a CWE-770 weakness and is classified as high severity. Users are advised to update to the fixed container image available from the Red Hat container registry.

Affected software

redhat/389-ds-base
pkg:rpm/redhat/389-ds-base
Affected versions
=12.2<12.2.7-15

Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 08/02/2026, 23:57:48 UTC

Technical Analysis

CVE-2026-9064 affects the Red Hat Directory Server 13.2 container image for RHEL 10. The vulnerability is associated with CWE-770, which typically involves allocation of resources without limits or throttling, potentially leading to resource exhaustion or denial of service. Red Hat has released an updated container image that includes security patches and bug fixes to address this issue. The updated image can be pulled from the Red Hat container registry using the specified podman command. No known exploits in the wild have been reported. The advisory is identified as RHSA-2026:27125.

Potential Impact

The vulnerability could allow an attacker to exploit resource management weaknesses in the affected container image, potentially causing denial of service or other resource exhaustion impacts. The severity is rated high by Red Hat, indicating a significant security risk if unpatched. However, no active exploitation has been observed in the wild to date.

Mitigation Recommendations

Red Hat has provided an updated container image that addresses the vulnerability. Users should pull the latest Red Hat Directory Server 13.2 container image for RHEL 10 from the Red Hat container registry using the command: podman pull registry.redhat.io/dirsrv/dirsrv-container-rhel10:13.2. Applying this update is the recommended remediation. No additional mitigation steps are specified or required according to the vendor advisory.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Csaf Category
csaf_security_advisory
Csaf Version
2.0
Publisher
Red Hat Product Security
Advisory Id
RHSA-2026:26639
Cve Count
1
Additional Cves
[]
Cvss Version
null

Threat ID: 6a380732eed863c81e00a295

Added to database: 06/21/2026, 15:45:54 UTC

Last enriched: 08/02/2026, 23:57:48 UTC

Last updated: 08/05/2026, 12:41:17 UTC

Views: 95

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses