Critical FreeIPA Vulnerabilities Allow Unauthenticated Admin Access

Critical FreeIPA Vulnerabilities Allow Unauthenticated Admin Access

First seen 8 Sep 2026, 12:03 UTC Thehackernewswww.freeipa.orgaccess.redhat.com 78.0

Article Content

Browse articles
ThreatCluster

A critical flaw in FreeIPA, tracked as CVE-2026-76578, allows unauthenticated clients to create Kerberos identities and gain administrative privileges. This vulnerability arises from a misconfigured access control rule in FreeIPA's 389 Directory Server, enabling attackers to exploit it without prior authentication. Red Hat confirmed that this flaw can be exploited on default installations, allowing remote attackers to perform administrative operations. The vulnerability has a CVSS score of 9.8, indicating its critical nature. A related flaw, CVE-2026-13097, was previously addressed but did not fix the underlying unauthenticated write access issue. Red Hat has released a patch for FreeIPA version 4.13.4 to mitigate this risk. Organizations using FreeIPA should restrict LDAP service access and apply the latest patches immediately. The vulnerabilities primarily affect FreeIPA deployments that expose LDAP to untrusted networks.

Key Points: • CVE-2026-76578 allows unauthenticated access to FreeIPA admin privileges. • Exploitation requires no prior authentication or user interaction. • Patches are available, and immediate action is recommended for affected systems.

Ask AI about this cluster

Timeline

2026-08-11
CVE-2026-19550 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-08-20
CVE-2026-11861 published
Vulnerability allows Active Directory users to bypass FreeIPA authentication under specific conditions.
www.freeipa.org
2026-08-20
CVE-2026-13097 published
Privilege escalation flaw in FreeIPA due to improper uniqueness enforcement in LDAP datastore.
www.freeipa.org
2026-08-20
CVE-2026-73196 published
Authenticated DoS vulnerability in FreeIPA allows low-privilege users to degrade service availability.
www.freeipa.org
2026-08-20
CVE-2026-73198 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-08-20
CVE-2026-73199 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-08-20
CVE-2026-73197 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-09-07
CVE-2026-76560 published
Flaw in 389 Directory Server allows unauthenticated clients to create Kerberos identities.
Thehackernews
2026-09-07
CVE-2026-76578 published
Critical flaw allows unauthenticated clients to gain admin access in FreeIPA.
access.redhat.com
2026-09-07
CVE-2026-79678 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE