Red HatCVE-2026-79678
Red Hat FreeIPA: improper access control
High8.1CVE-2026-79678 · Published Sep 7, 2026 · updated Sep 24, 2026
A flaw was found in FreeIPA's idp-add command, where insufficiently validated --organization/--base-url input reaches a constrained eval() call before the corresponding LDAP access control check is enforced. This allows any authenticated IPA principal, regardless of privilege level, to enumerate and read the environment variables of the affected server process and to cause denial of service via memory exhaustion.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Red Hat Enterprise Linux 10 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 6 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 7 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 8 Product | all versions | No fix yet |
| all versions | No fix yet | |
| all versions | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-95
More Red Hat advisories
All Red Hat| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 7 | Red Hat GLib2.: link following | Medium5.3 | No fix yet |
| Sep 7 | Red Hat 389 Directory Server: denial of service | High7.5 | No fix yet |
| Sep 7 | Red Hat 389 Directory Server: improper authentication | Critical9.8 | No fix yet |
| Sep 7 | Red Hat 389-ds-base. The Cockpit 389 Console: command injection | High8.4 | No fix yet |
| Sep 7 | Red Hat: buffer overflow | High7.5 | No fix yet |
| Sep 7 | Red Hat 389 Directory Server: improper access control | High7.5 | No fix yet |