## This update for 389-ds fixes the following issues: Update to version 2.0.20~git64.628a24b68: Security fixes: * CVE-2025-3416: Fixed openssl use after free (bsc#1242666) Other fixes: * resolve infinite loop due when loading RUV entryrdn (bsc#1243428) Upstream changelog: * Issue 6119 - Synchronise accept_thread with slapd_daemon (#6120) * Issue 6825 - RootDN Access Control Plugin with wildcards for IP addre⦠(#6826) * Issue 6819 - Incorrect pwdpolicysubentry returned for an entry with user password policy * Issue 6641 - modrdn fails when a user is member of multiple groups (#6643) * Issue 6534 - CI fails with Fedora 41 and DNF5 * Revert "Issue 5120 - ns-slapd doesn't start in referral mode (#6763)" * Issue 6438 - Add basic dsidm organizational unit tests * Issue 6439 - Fix dsidm service
* bsc#1242666
* bsc#1243428
Cross-
* CVE-2025-3416
CVSS scores:
* CVE-2025-3416 ( SUSE ): 6.3
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
* CVE-2025-3416 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
* CVE-2025-3416 ( NVD ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Affected Products:
* openSUSE Leap 15.4
An update that solves one vulnerability and has one security fix can now be
installed.
##
* https://www.suse.com/security/cve/CVE-2025-3416.html
* https://bugzilla.suse.com/show_bug.cgi?id=1242666
* https://bugzilla.suse.com/show_bug.cgi?id=1243428
Get the latest Linux and open source security news straight to your inbox.