Scientific Linux alert SLSA-2022:0628-1 (389-ds-base)
| From: | Farhan Ahmed <fahmed@fnal.gov> | |
| To: | scientific-linux-errata@listserv.fnal.gov | |
| Subject: | Security ERRATA Low: 389-ds-base on SL7.x x86_64 | |
| Date: | Wed, 23 Feb 2022 14:26:21 -0000 | |
| Message-ID: | <20220223142621.547.32289@0acbe050e934> |
Synopsis: Low: 389-ds-base security and bug fix update Advisory ID: SLSA-2022:0628-1 Issue Date: 2022-02-23 CVE Numbers: CVE-2021-4091 -- Security Fix(es): * 389-ds-base: double-free of the virtual attribute context in persistent search (CVE-2021-4091) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE Bug Fix(es): * CSN generator can adjust wrongly the local and remote offsets used to generate a CSN -- SL7 x86_64 389-ds-base-1.3.10.2-15.el7_9.x86_64.rpm 389-ds-base-debuginfo-1.3.10.2-15.el7_9.x86_64.rpm 389-ds-base-devel-1.3.10.2-15.el7_9.x86_64.rpm 389-ds-base-libs-1.3.10.2-15.el7_9.x86_64.rpm 389-ds-base-snmp-1.3.10.2-15.el7_9.x86_64.rpm - Scientific Linux Development Team
