LWN.net Logo

Fedora alert FEDORA-2008-6029 (openldap)

From:  updates@fedoraproject.org
To:  fedora-package-announce@redhat.com
Subject:  [SECURITY] Fedora 8 Update: openldap-2.3.39-4.fc8
Date:  Thu, 03 Jul 2008 03:15:35 +0000
Message-ID:  <200807030315.m633FJjg018319@bastion.fedora.phx.redhat.com>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2008-6029 2008-07-03 00:42:34 -------------------------------------------------------------------------------- Name : openldap Product : Fedora 8 Version : 2.3.39 Release : 4.fc8 URL : http://www.openldap.org/ Summary : The configuration files, libraries, and documentation for OpenLDAP Description : OpenLDAP is an open source suite of LDAP (Lightweight Directory Access Protocol) applications and development tools. LDAP is a set of protocols for accessing directory services (usually phone book style information, but other information is possible) over the Internet, similar to the way DNS (Domain Name System) information is propagated over the Internet. The openldap package contains configuration files, libraries, and documentation for OpenLDAP. -------------------------------------------------------------------------------- Update Information: This update fixes CVE-2008-2952 - remote unauthenticated slapd DoS. -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 2 2008 Jan Safranek <jsafranek@redhat.com> 2.3.39-4 - fix CVE-2008-2952 (#453726) * Fri Feb 8 2008 Jan Safranek <jsafranek@redhat.com> 2.3.39-3 - fix CVE-2008-0658 (#432013) * Mon Jan 14 2008 Jan Safranek <jsafranek@redhat.com> 2.3.39-2 - fix default slurpd directory to /var/lib/ldap (#424831) * Fri Nov 2 2007 Jan Safranek <jsafranek@redhat.com> 2.3.39-1 - new upstream version, fixing few security flaws (#362991) -------------------------------------------------------------------------------- References: [ 1 ] Bug #453444 - CVE-2008-2952 OpenLDAP denial-of-service flaw in ASN.1 decoder https://bugzilla.redhat.com/show_bug.cgi?id=453444 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update openldap' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at http://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...


(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds