Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Mageia 7 Advisory MGASA-2021-0046 Critical: OpenLDAP Denial of Service

mageia
Calendar Grey January 19, 2021
Dist Mageia Esm H88
The security update MGASA-2021-0046 for OpenLDAP highlights vulnerabilities that could lead to remote denial of service attacks and outlines the steps for patch implementation.
It was discovered that OpenLDAP incorrectly handled certain malformed inputs

Summary

It was discovered that OpenLDAP incorrectly handled certain malformed inputs. A remote attacker could possibly use this issue to cause OpenLDAP to crash, resulting in a denial of service (CVE-2020-25709, CVE-2020-25710).

References

- https://bugs.mageia.org/show_bug.cgi?id=27625

- https://ubuntu.com/security/notices/USN-4634-1

- https://www.cve.org/CVERecord?id=CVE-2020-25709

- https://www.cve.org/CVERecord?id=CVE-2020-25710

Resolution

SRPMS

- 7/core/openldap-2.4.50-1.3.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 19 Jan 2021
URL: https://advisories.mageia.org/MGASA-2021-0046.html
Type: security
CVE: CVE-2020-25709, CVE-2020-25710

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here