Format: 1.8 Date: Fri, 01 May 2020 13:09:12 -0400 Source: openldap Binary: ldap-utils libldap-2.4-2 libldap-common libldap2-dev slapd slapd-contrib slapd-smbk5pwd slapi-dev Architecture: amd64 all amd64_translations Version: 2.4.49+dfsg-2ubuntu1.2 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: ldap-utils - OpenLDAP utilities libldap-2.4-2 - OpenLDAP libraries libldap-common - OpenLDAP common files for libraries libldap2-dev - OpenLDAP development libraries slapd - OpenLDAP server (slapd) slapd-contrib - contributed plugins for OpenLDAP slapd slapd-smbk5pwd - transitional package for slapd-contrib slapi-dev - development libraries for OpenLDAP SLAPI plugin interface Changes: openldap (2.4.49+dfsg-2ubuntu1.2) focal-security; urgency=medium . * SECURITY UPDATE: denial of service via nested search filters - debian/patches/CVE-2020-12243.patch: limit depth of nested filters in servers/slapd/filter.c. - debian/patches/fix_test_timing.patch: fix FTBFS on riscv64 because of test timing issue. - CVE-2020-12243 Checksums-Sha1: 3b9b0e096ff3431f3e77e900584200d0877644d2 537328 ldap-utils-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb b8d1f5625bfaa1372324784322d51784f6b95681 121528 ldap-utils_2.4.49+dfsg-2ubuntu1.2_amd64.deb 686e2195d2a63484258b3ded9e379375429ff6ea 542460 libldap-2.4-2-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb bc1ccdfd2f11cd564baea9c1b1d29a28a2555e03 155500 libldap-2.4-2_2.4.49+dfsg-2ubuntu1.2_amd64.deb 2596ea124fa31252f1ae74758d8c2305c6eaa935 17356 libldap-common_2.4.49+dfsg-2ubuntu1.2_all.deb cc526b4a7406d3c7c94f03d918bd73676980925a 262332 libldap2-dev_2.4.49+dfsg-2ubuntu1.2_amd64.deb 1d0d2745391c996057d039bef41ecfc12db2c390 11391 openldap_2.4.49+dfsg-2ubuntu1.2_amd64.buildinfo addc04d67660207b92ffaa656367dfce1f5f765f 63656 openldap_2.4.49+dfsg-2ubuntu1.2_amd64_translations.tar.gz 208fa2620088b92ad6da4f08873478ecdd053afe 62192 slapd-contrib-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb 017a48d667a0ad543364cd6636ba32334bbca496 24672 slapd-contrib_2.4.49+dfsg-2ubuntu1.2_amd64.deb 57d4afba9b4ba674cfaa6906265706fa4c9e1f0f 7197592 slapd-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb bdc5ac1556afe57a9d678b9a0bbd25be3687db12 7180 slapd-smbk5pwd_2.4.49+dfsg-2ubuntu1.2_all.deb ab056198d4c2e9d3889a166c4537f37677bdd771 1397016 slapd_2.4.49+dfsg-2ubuntu1.2_amd64.deb 63cddae17d5d1173c0f42baed10cb80e0e1821b8 14636 slapi-dev_2.4.49+dfsg-2ubuntu1.2_amd64.deb Checksums-Sha256: b6de924ebbdee1debfaaa5e67a7f5695d427259c1ed4f72eeb6bd6e46502ddc3 537328 ldap-utils-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb ae73cfaf393466eafb32d5fe746e349b3c5caed77c3625d52b91a8031d5b9ff0 121528 ldap-utils_2.4.49+dfsg-2ubuntu1.2_amd64.deb f8292f1526a6b6b55c3efd83e8c24438e7af415c5f99395d22e9f95422629c1d 542460 libldap-2.4-2-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb 97d48e011bef22c1714cc0140183942010f19f04abd2c921151129f4105041a6 155500 libldap-2.4-2_2.4.49+dfsg-2ubuntu1.2_amd64.deb 7abe63b7defd6babd572a5597c75fca8c195a0e9f1d96c5ec52782767d915360 17356 libldap-common_2.4.49+dfsg-2ubuntu1.2_all.deb 6772ad1bb0c0136fb28ae6bfc9c6c284e7baffa8e92709a67e059405d39b1888 262332 libldap2-dev_2.4.49+dfsg-2ubuntu1.2_amd64.deb ae62ab061e8955080918aee945228550a4081a7f91341f2f5f7d8569a98f802e 11391 openldap_2.4.49+dfsg-2ubuntu1.2_amd64.buildinfo 8875e5e8d39033affb48b2ccde3fb515cd908d3d6ec18c862b72948e16535d91 63656 openldap_2.4.49+dfsg-2ubuntu1.2_amd64_translations.tar.gz 7fa9ed46f5f1c99fe8755552f75c60847e31e052134db47b2785f0a587897b5b 62192 slapd-contrib-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb 89f62ff9636dfa966411876e377eb7a0caec1877a5438aaa83ef9bd3cef89e54 24672 slapd-contrib_2.4.49+dfsg-2ubuntu1.2_amd64.deb fb1fd0024a0fdcf61330c1423c433e0014379e281645d157c2cfbe27cbd2ad8f 7197592 slapd-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb b91635461e930a4e3a015b1367e7b28dd69d5055db74016fac01fbf335be60d3 7180 slapd-smbk5pwd_2.4.49+dfsg-2ubuntu1.2_all.deb 1afa2849067859b02dfa022aa6075f77ce125fdf1a8019dbda612eb0e017c8a5 1397016 slapd_2.4.49+dfsg-2ubuntu1.2_amd64.deb 9842670c4d2a0314e22ca40eb52c45a8b99abaafec22e13d9a634ac761f80530 14636 slapi-dev_2.4.49+dfsg-2ubuntu1.2_amd64.deb Files: 8f7c174930974981611c5f8f3215deb0 537328 debug optional ldap-utils-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb ee2d213294d80607e1f17e38aa225c77 121528 net optional ldap-utils_2.4.49+dfsg-2ubuntu1.2_amd64.deb a3c8188a1a80f870799d53f76f084baa 542460 debug optional libldap-2.4-2-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb 058f0672eb6fd41abf0cf40de630f1c9 155500 libs optional libldap-2.4-2_2.4.49+dfsg-2ubuntu1.2_amd64.deb 8fc79e11cd26be6f3a85292040108cb4 17356 libs optional libldap-common_2.4.49+dfsg-2ubuntu1.2_all.deb 8a8e99fc9c606cae540e4ebeb2111124 262332 libdevel optional libldap2-dev_2.4.49+dfsg-2ubuntu1.2_amd64.deb 126dcaa33dda194544db01e426b0c702 11391 net optional openldap_2.4.49+dfsg-2ubuntu1.2_amd64.buildinfo b19f8f70b4d66dc3e34f5a743d52c54f 63656 raw-translations - openldap_2.4.49+dfsg-2ubuntu1.2_amd64_translations.tar.gz ae63c43aed8073f47b8782951b5b9595 62192 debug optional slapd-contrib-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb 0536229e138bbfa5751f5de3982634b5 24672 net optional slapd-contrib_2.4.49+dfsg-2ubuntu1.2_amd64.deb dff49831f9dee79ad732f8f8fe690677 7197592 debug optional slapd-dbgsym_2.4.49+dfsg-2ubuntu1.2_amd64.ddeb 086489fb7e8d758baf8b6d7fc254c66f 7180 oldlibs optional slapd-smbk5pwd_2.4.49+dfsg-2ubuntu1.2_all.deb 0ea4a3b6bbb8e39fda92b0373a02613e 1397016 net optional slapd_2.4.49+dfsg-2ubuntu1.2_amd64.deb 7536aaa9acb89d7ef07b4c29fe2a6fad 14636 libdevel optional slapi-dev_2.4.49+dfsg-2ubuntu1.2_amd64.deb Original-Maintainer: Debian OpenLDAP Maintainers