[El-errata] ELBA-2025-23155 Oracle Linux 7 ipa bug fix and enhancement update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon Jan 19 11:32:20 UTC 2026


Oracle Linux Bug Fix Advisory ELBA-2025-23155

http://linux.oracle.com/errata/ELBA-2025-23155.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
ipa-client-4.6.8-5.0.7.el7_9.17.x86_64.rpm
ipa-client-common-4.6.8-5.0.7.el7_9.17.noarch.rpm
ipa-common-4.6.8-5.0.7.el7_9.17.noarch.rpm
ipa-python-compat-4.6.8-5.0.7.el7_9.17.noarch.rpm
ipa-server-4.6.8-5.0.7.el7_9.17.x86_64.rpm
ipa-server-common-4.6.8-5.0.7.el7_9.17.noarch.rpm
ipa-server-dns-4.6.8-5.0.7.el7_9.17.noarch.rpm
ipa-server-trust-ad-4.6.8-5.0.7.el7_9.17.x86_64.rpm
python2-ipaclient-4.6.8-5.0.7.el7_9.17.noarch.rpm
python2-ipalib-4.6.8-5.0.7.el7_9.17.noarch.rpm
python2-ipaserver-4.6.8-5.0.7.el7_9.17.noarch.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/ipa-4.6.8-5.0.7.el7_9.17.src.rpm



Description of changes:

[4.6.8-5.0.7.el7_9.17]
- Fixes ELBA-2025-23155 kdb: do not fail if canonical principal is missing [Orabug: 38761213]

[4.6.8-5.0.5.el7_9.17]
- Fixes  CVE-2025-7493 Enforce uniqueness across krbprincipalname
- and krbcanonicalname [Orabug: 38520120]

[4.6.8-5.0.3.el7_9.17]
- Fix privilege escalation from host to domain vulnerability
- CVE-2025-4404 [Orabug: 38085890]




More information about the El-errata mailing list