SUSE-RU-2026:23703-1: important: Recommended update for openldap2_6

SLE-UPDATES null at suse.de
Wed Sep 16 16:46:12 UTC 2026


# Recommended update for openldap2_6

Announcement ID: SUSE-RU-2026:23703-1  
Release Date: 2026-09-10T13:05:39Z  
Rating: important  
References:

  * bsc#1239787

  
Affected Products:

  * SUSE Linux Enterprise Server 16.0

  
  
An update that has one fix can now be installed.

## Description:

This update for openldap2_6 fixes the following issues:

Changes in openldap2_6:

  * Update to version 2.6.13+157:
    * Add export symbols related to LDAP_CONNECTIONLESS
    * Clear after free:
      * Cleaning up memory and immediately erasing the pointer's memory address
    * prevent double free:
      * Ensuring the application never releases the exact same block of memory twice
    * liblber calloc:
      * OpenLDAP's specialized memory allocator that automatically wipes memory clean
    * Fix: openldap2_5: segfault when try to add bad escaped regex (bsc#1239787):
      * prevent double free in info rewrite
    * Set default ldapi path to be consistent for SUSE
    * guide.html file cherry-picked from https://src.opensuse.org/jengelh/openldap2/src/branch/master/openldap-2.6.8.tgz
    * Use OpenSSL API to verify host
    * Change malloc to use calloc to prevent memory reuse corruption
    * Return to release engineering

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".  
Alternatively you can run the command listed for your product:

  * SUSE Linux Enterprise Server 16.0  
    zypper in -t patch SUSE-SLES-16.0-1658

## Package List:

  * SUSE Linux Enterprise Server 16.0 (aarch64 ppc64le s390x x86_64)
    * openldap2_6-devel-2.6.13+157-160000.1.1
    * libldapcpp-devel-2.6.13+157-160000.1.1
    * libldap2-sap-compat-debuginfo-2.6.13+157-160000.1.1
    * libldapcpp0-debuginfo-2.6.13+157-160000.1.1
    * libldapcpp0-2.6.13+157-160000.1.1
    * libldap2-sap-compat-2.6.13+157-160000.1.1
    * openldap2_6-client-debuginfo-2.6.13+157-160000.1.1
    * openldap2_6-client-2.6.13+157-160000.1.1
    * libldap-2-debuginfo-2.6.13+157-160000.1.1
    * openldap2_6-debuginfo-2.6.13+157-160000.1.1
    * libldap-2-2.6.13+157-160000.1.1
    * openldap2_6-debugsource-2.6.13+157-160000.1.1
  * SUSE Linux Enterprise Server 16.0 (noarch)
    * libldap-data-2.6.13+157-160000.1.1
    * openldap2_6-doc-2.6.13+157-160000.1.1

## References:

  * https://bugzilla.suse.com/show_bug.cgi?id=1239787

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.suse.com/pipermail/sle-updates/attachments/20260916/c4315f30/attachment-0001.htm>


More information about the sle-updates mailing list