UbuntuUpdates.org

Package "slapd-smbk5pwd"

Name: slapd-smbk5pwd

Description:

transitional package for slapd-contrib

Latest version: 2.4.49+dfsg-2ubuntu1.3
Release: focal (20.04)
Level: updates
Repository: universe
Head package: openldap
Homepage: http://www.openldap.org/

Links


Download "slapd-smbk5pwd"


Other versions of "slapd-smbk5pwd" in Focal

Repository Area Version
base universe 2.4.49+dfsg-2ubuntu1
security universe 2.4.49+dfsg-2ubuntu1.2

Changelog

Version: 2.4.49+dfsg-2ubuntu1.3 2020-07-16 10:06:42 UTC

  openldap (2.4.49+dfsg-2ubuntu1.3) focal; urgency=medium

  * d/apparmor-profile: Update apparmor profile to grant access to
    the saslauthd socket, so that SASL authentication works. (LP: #1557157)

 -- Sergio Durigan Junior <email address hidden> Fri, 12 Jun 2020 18:18:58 -0400

Source diff to previous version
1557157 apparmor profile denied for saslauthd: /run/saslauthd/mux

Version: 2.4.49+dfsg-2ubuntu1.2 2020-05-06 17:08:47 UTC

  openldap (2.4.49+dfsg-2ubuntu1.2) focal-security; urgency=medium

  * SECURITY UPDATE: denial of service via nested search filters
    - debian/patches/CVE-2020-12243.patch: limit depth of nested filters in
      servers/slapd/filter.c.
    - debian/patches/fix_test_timing.patch: fix FTBFS on riscv64 because of
      test timing issue.
    - CVE-2020-12243

 -- Marc Deslauriers <email address hidden> Fri, 01 May 2020 13:09:12 -0400

CVE-2020-12243 In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).



About   -   Send Feedback to @ubuntu_updates