ELSA-2015-0728

ELSA-2015-0728 - ipa and slapi-nis security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2015-03-26

Description


ipa
[4.1.0-18.0.1.el7_1.3]
- Replace login-screen-logo.png [20362818]
- Drop subscription-manager requires for OL7
- Drop redhat-access-plugin-ipa requires for OL7
- Blank out header-logo.png product-name.png

[4.1.0-18.3]
- [ipa-python] ipalib.errors.LDAPError: failed to decode certificate:
(SEC_ERROR_INVALID_ARGS) security library: invalid arguments. (#1194312)

[4.1.0-18.2]
- IPA extdom plugin fails when encountering large groups (#1193759)
- CVE-2015-0283 ipa: slapi-nis: infinite loop in getgrnam_r() and getgrgid_r()
(#1202997)

[4.1.0-18.1]
- 'an internal error has occurred' during ipa host-del --updatedns (#1198431)
- Renamed patch 1013 to 0114, as it was merged upstream
- Fax number not displayed for user-show when kinit'ed as normal user.
(#1198430)
- Replication agreement with replica not disabled when ipa-restore done without
IPA installed (#1199060)
- Limit deadlocks between DS plugin DNA and slapi-nis (#1199128)

slapi-nis
[0.54-3]
- Fix CVE-2015-0283
- Resolves: #1202995


Related CVEs


CVE-2015-0283
CVE-2015-1827

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) ipa-4.1.0-18.0.1.el7_1.3.src.rpmfd8c456d43835e67a6404e7e84a9fe8fELBA-2021-1395
slapi-nis-0.54-3.el7_1.src.rpm030384c3ec53c4522b0674eb992dcfccELSA-2021-2032
ipa-admintools-4.1.0-18.0.1.el7_1.3.x86_64.rpmf8f09c689f32dc051a8a099c06f2a632ELBA-2017-0925
ipa-client-4.1.0-18.0.1.el7_1.3.x86_64.rpm95297de229ef991314646618a17a8e60ELBA-2021-1395
ipa-python-4.1.0-18.0.1.el7_1.3.x86_64.rpm3b5750fcde71b4803253d4220a53e95dELSA-2016-1797
ipa-server-4.1.0-18.0.1.el7_1.3.x86_64.rpmf9cb3f965517f587927be6657a204734ELBA-2021-1395
ipa-server-trust-ad-4.1.0-18.0.1.el7_1.3.x86_64.rpma4f3973cc91cf3d7a4b49678e5782343ELBA-2021-1395
slapi-nis-0.54-3.el7_1.x86_64.rpma7eada1f3b9a2b2ceb6e48b5a0a81efbELSA-2021-2032



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete