Alerts This Week
Warning Icon 1 758
Alerts This Week
Warning Icon 1 758

Scientific Linux SL7 OpenLDAP Minor Vulnerability Resolution CVE-2014-8132

Scientific Large Esm H446
Low: openldap security and bug fix update
Date: Mon, 9 Jul 2012 10:01:24 -0500
Reply-To: This email address is being protected from spambots. You need JavaScript enabled to view it.
Sender: Security Errata for Scientific Linux
 
From: Patrick Riehecky 
Subject: Security ERRATA Low: openldap on SL6.x i386/x86_64
Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it.

Synopsis: Low: openldap security and bug fix update
Issue Date: 2012-06-20
CVE Numbers: CVE-2012-1164

OpenLDAP is an open source suite of LDAP (Lightweight Directory Access
Protocol) applications and development tools.

A denial of service flaw was found in the way the OpenLDAP server daemon
(slapd) processed certain search queries requesting only attributes and no
values. In certain configurations, a remote attacker could issue a
specially-crafted LDAP search query that, when processed by slapd, would
cause slapd to crash due to an assertion failure. (CVE-2012-1164)

These updated openldap packages include numerous bug fixes.

Users of OpenLDAP are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. After installing this
update, the OpenLDAP daemons will be restarted automatically.

SL6:
 i386
 openldap-2.4.23-26.el6.i686.rpm
 openldap-clients-2.4.23-26.el6.i686.rpm
 openldap-debuginfo-2.4.23-26.el6.i686.rpm
 openldap-devel-2.4.23-26.el6.i686.rpm
 openldap-servers-2.4.23-26.el6.i686.rpm
 openldap-servers-sql-2.4.23-26.el6.i686.rpm
 x86_64
 openldap-2.4.23-26.el6.i686.rpm
 openldap-2.4.23-26.el6.x86_64.rpm
 openldap-clients-2.4.23-26.el6.x86_64.rpm
 openldap-debuginfo-2.4.23-26.el6.i686.rpm
 openldap-debuginfo-2.4.23-26.el6.x86_64.rpm
 openldap-devel-2.4.23-26.el6.i686.rpm
 openldap-devel-2.4.23-26.el6.x86_64.rpm
 openldap-servers-2.4.23-26.el6.x86_64.rpm
 openldap-servers-sql-2.4.23-26.el6.x86_64.rpm

- Scientific Linux Development Team
Your message here