Skip to content
Fedora 43 389-ds-base Security Advisory 2026

Fedora 43 389-ds-base Security Advisory 2026

Linuxsecurity LinuxSecurity Advisories February 26, 2026

389 Directory Server is an LDAPv3 compliant server. The base package includes the LDAP server and command line utilities for server administration. Update Information : New minor version of the Python interpreter, bringing also security fixes. 389-ds-base: Fix system index configuration issues 389-ds-base: Fix AttributeError: 'CustomHelpFormatter' object has no attribute '_format_actions_usage'

389 Directory Server is an LDAPv3 compliant server. The base package includes

the LDAP server and command line utilities for server administration.

New minor version of the Python interpreter, bringing also security fixes. 389-ds-base: Fix system index configuration issues 389-ds-base: Fix AttributeError: 'CustomHelpFormatter' object has no attribute '_format_actions_usage'

* Fri Feb 13 2026 Viktor Ashirov - 3.1.4-7 - Issue 7253 - ipa-backup broken with python3-libs-3.14.3-1.fc43 * Wed Feb 11 2026 Viktor Ashirov - 3.1.4-6 - Add missing upgrade steps to %post * Tue Feb 10 2026 Viktor Ashirov - 3.1.4-5 - Fix system index configuration issues

* Fri Feb 13 2026 Viktor Ashirov - 3.1.4-7 - Issue 7253 - ipa-backup broken with python3-libs-3.14.3-1.fc43 * Wed Feb 11 2026 Viktor Ashirov - 3.1.4-6 - Add missing upgrade steps to %post * Tue Feb 10 2026 Viktor Ashirov - 3.1.4-5 - Fix system index configuration issues

[ 1 ] Bug #2424574 - 389-ds-base fails to build with Python 3.15: AttributeError: 'CustomHelpFormatter' object has no attribute '_format_actions_usage' [ 2 ] Bug #2431825 - CVE-2025-11468 python3.14: Missing character filtering in Python [fedora-43] [ 3 ] Bug #2431837 - CVE-2026-0672 python3.14: Header injection in http.cookies.Morsel in Python [fedora-43] [ 4 ] Bug #2431838 - CVE-2026-0865 python3.14: wsgiref.headers.Headers allows header newline injection in Python [fedora-43] [ 5 ] Bug #2431851 - CVE-2025-15282 python3.14: Header injection via newlines in data URL mediatype in Python [fedora-43] [ 6 ] Bug #2433829 - CVE-2026-1299 python3.14: email header injection... Read the Full Advisory

[ 1 ] Bug #2424574 - 389-ds-base fails to build with Python 3.15: AttributeError: 'CustomHelpFormatter' object has no attribute '_format_actions_usage' [ 2 ] Bug #2431825 - CVE-2025-11468 python3.14: Missing character filtering in Python [fedora-43] [ 3 ] Bug #2431837 - CVE-2026-0672 python3.14: Header injection in http.cookies.Morsel in Python [fedora-43] [ 4 ] Bug #2431838 - CVE-2026-0865 python3.14: wsgiref.headers.Headers allows header newline injection in Python [fedora-43] [ 5 ] Bug #2431851 - CVE-2025-15282 python3.14: Header injection via newlines in data URL mediatype in Python [fedora-43] [ 6 ] Bug #2433829 - CVE-2026-1299 python3.14: email header injection...

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-27ce708600' at the command line. For more information, refer to the dnf documentation available at

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-27ce708600' at the command line. For more information, refer to the dnf documentation available at