Comment 2 for bug 197077

Revision history for this message
Emanuele Gentili (emgent) wrote :

+openldap2.3 (2.3.35-1ubuntu0.2) gutsy-security; urgency=low
+
+ * SECURITY UPDATE:
+ + debian/patches/SECURITY_CVE-2008-0658.patch (LP: #197077)
+ slapd/back-bdb/modrdn.c in the BDB backend for slapd in OpenLDAP 2.3.39
+ allows remote authenticated users to cause a denial of service (daemon crash)
+ via a modrdn operation with a NOOP (LDAP_X_NO_OPERATION) control, a related
+ issue to CVE-2007-6698.
+
+ * References
+ - http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0658
+ - http://www.openldap.org/its/index.cgi/Software%20Bugs?id=5358
+
+ -- Emanuele Gentili <email address hidden> Sun, 02 Mar 2008 15:20:13 +0100