Publishing details

Changelog

openldap (2.5.12+dfsg-1ubuntu0.22.04.1) jammy; urgency=medium

  * New upstream version (LP: #1977627).
    - Fixed libldap to allow newlines at end of included file (ITS#9811)
    - Fixed slapd syncrepl handling of new sessions (ITS#9584)
    - Fixed slapd to clear connections on bind (ITS#9799)
    - Fixed slapd to correctly advance connections index (ITS#9831)
    - Fixed slapd-asyncmeta memory leak in keepalive setting (ITS#9802)
    - Fixed slapd-ldap memory leak in keepalive setting (ITS#9802)
    - Fixed slapd-sql to properly escape filter value (ITS#9815)
      (CVE-2022-29155)
      [ Already included in 2.5.11+dfsg-1~exp1ubuntu3.1 ]
    - More details about this release can be found at:
      https://git.openldap.org/openldap/openldap/-/blob/2bda1fa98fbcedc6cd5995ea905427b8bef89f9d/CHANGES
  * Dropped changes:
    - SECURITY UPDATE: SQL injection in experimental back-sql backend
      + debian/patches/CVE-2022-29155.patch: escape filter values in
        servers/slapd/back-sql/search.c.
      + CVE-2022-29155
    [Included in 2.5.12]

 -- Sergio Durigan Junior <email address hidden>  Thu, 09 Jun 2022 19:35:54 -0400

Available diffs

Builds

Built packages

Package files