Format: 1.7 Date: Sun, 02 Mar 2008 16:34:30 +0100 Source: openldap2.3 Binary: slapd ldap-utils libldap-2.4-2 libldap-2.4-2-dbg libldap2-dev slapd-dbg Architecture: lpia_translations lpia Version: 2.4.7-5ubuntu2 Distribution: hardy Urgency: low Maintainer: Ubuntu/lpia Build Daemon Changed-By: Emanuele Gentili Description: ldap-utils - OpenLDAP utilities libldap-2.4-2 - OpenLDAP libraries libldap-2.4-2-dbg - Debugging information for OpenLDAP libraries libldap2-dev - OpenLDAP development libraries slapd - OpenLDAP server (slapd) slapd-dbg - Debugging information for the OpenLDAP server (slapd) Launchpad-Bugs-Fixed: 197077 Changes: openldap2.3 (2.4.7-5ubuntu2) hardy; urgency=low . * SECURITY UPDATE: + debian/patches/SECURITY_CVE-2008-0658.patch (LP: #197077) slapd/back-bdb/modrdn.c in the BDB backend for slapd in OpenLDAP 2.3.39 allows remote authenticated users to cause a denial of service (daemon crash) via a modrdn operation with a NOOP (LDAP_X_NO_OPERATION) control, a related issue to CVE-2007-6698. . * References - http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0658 - http://www.openldap.org/its/index.cgi/Software%20Bugs?id=5358 Files: 4221a0f86401ba0a603cc272404f0b1f 40620 raw-translations - openldap2.3_2.4.7-5ubuntu2_lpia_translations.tar.gz 77e9bf5823f656887d7624cc97707526 1324166 net optional slapd_2.4.7-5ubuntu2_lpia.deb 56e9b8cecf36ccda8c98e23b690ed14a 244162 net optional ldap-utils_2.4.7-5ubuntu2_lpia.deb ada5a330b5c198411ab8b2dde0907582 176058 libs optional libldap-2.4-2_2.4.7-5ubuntu2_lpia.deb 2aff8d2474e5ed474d72d10f0e35b959 283418 libdevel extra libldap-2.4-2-dbg_2.4.7-5ubuntu2_lpia.deb dd154067410edf6fcd1aad0e266d9607 747756 libdevel extra libldap2-dev_2.4.7-5ubuntu2_lpia.deb 630bb6dd17aa40c75c159600c06b1e43 3492088 net extra slapd-dbg_2.4.7-5ubuntu2_lpia.deb Original-Maintainer: Debian OpenLDAP Maintainers