ELSA-2018-0414

ELSA-2018-0414 - 389-ds-base security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2018-03-07

Description


[1.3.6.1-28]
- Bump version to 1.3.6.1-28
- Resolves: Bug 1540105 - CVE-2018-1054 - remote Denial of Service (DoS) via search filters in SetUnicodeStringFromUTF_8

[1.3.6.1-27]
- Bump version to 1.3.6.1-27
- Resolves: Bug 1536343 - Indexing of internationalized matching rules is failing
- Resolves: Bug 1535539 - CVE-2017-15135 - Authentication bypass due to lack of size check in slapi_ct_memcmp function
- Resolves: Bug 1540105 - CVE-2018-1054 - remote Denial of Service (DoS) via search filters in SetUnicodeStringFromUTF_8


Related CVEs


CVE-2018-1054
CVE-2017-15135

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) 389-ds-base-1.3.6.1-28.el7_4.src.rpmc1191880b61fcad2b146ffd0bf614383ELBA-2021-0868
389-ds-base-1.3.6.1-28.el7_4.x86_64.rpm8802876d3e68a93a70120136eff72bd0ELBA-2021-0868
389-ds-base-devel-1.3.6.1-28.el7_4.x86_64.rpmd8ad8e429e0045962de9eb36adfb55ceELBA-2021-0868
389-ds-base-libs-1.3.6.1-28.el7_4.x86_64.rpm2fcc5f4837fd34e8f4dafbb64ab3c262ELBA-2021-0868
389-ds-base-snmp-1.3.6.1-28.el7_4.x86_64.rpm454f8b2d7b323b001118433a3aed9365ELBA-2021-0868



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete