# CVE-2026-19843

## Summary

- **CVE ID:** CVE-2026-19843
- **Severity:** HIGH
- **CVSS Score:** 8.4 (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H)
- **CWE:** CWE-78
- **Published:** Sep 7, 2026
- **Last Modified:** Sep 8, 2026

## Description

A flaw was found in 389-ds-base. The Cockpit 389 Console's LDAP editor constructs an ldapsearch command by embedding an LDAP entry's distinguished name (DN) into a shell command string without proper escaping. An LDAP user with delegated privileges to create or rename directory entries could craft a malicious DN containing shell metacharacters. When a Cockpit administrator subsequently views the entry in the 389 Console, the embedded shell command executes with root privileges on the directory server host.

## Affected Products

- Red Hat — Red Hat Directory Server 13.0 EUS for RHEL 10 (0:3.0.6-4.el10dsrv)
- Red Hat — Red Hat Directory Server 13.2 for RHEL 10 (0:3.2.0-7.el10dsrv)
- Red Hat — Red Hat Directory Server 11.7 E4S for RHEL 8 (8080020260903102346.f969626e)
- Red Hat — Red Hat Directory Server 12.2 E4S for RHEL 9 (9020020260903155914.1674d574)
- Red Hat — Red Hat Directory Server 12.6 EUS for RHEL 9 (9060020260903100230.1674d574)
- Red Hat — Red Hat Directory Server 11.9 for RHEL 8 (8100020260904171440.37ed7c03)
- Red Hat — Red Hat Directory Server 12.4 E4S for RHEL 9 (9040020260903102623.1674d574)
- Red Hat — Red Hat Directory Server 12.8 for RHEL 9 (9080020260908092641.1674d574)

## References

- [CNA](https://access.redhat.com/security/cve/CVE-2026-19843)
- [CNA](https://bugzilla.redhat.com/show_bug.cgi?id=2515965)
- [CNA](https://access.redhat.com/errata/RHSA-2026:64768)
- [CNA](https://access.redhat.com/errata/RHSA-2026:64769)
- [CNA](https://access.redhat.com/errata/RHSA-2026:64779)
- [CNA](https://access.redhat.com/errata/RHSA-2026:64782)
- [CNA](https://access.redhat.com/errata/RHSA-2026:64792)
- [CNA](https://access.redhat.com/errata/RHSA-2026:64780)
- [CNA](https://access.redhat.com/errata/RHSA-2026:64793)
- [CNA](https://access.redhat.com/errata/RHSA-2026:65375)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.48%
- **EPSS Percentile:** 39.9

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._