ELSA-2018-2757

ELSA-2018-2757 - 389-ds-base security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2018-09-25

Description


[1.3.7.5-28]
- Bump version to 1.3.7.5-28
- Resolves: Bug 1628676 - 389-ds-base: race condition on reference counter leads to DoS using persistent search
- Resolves: Bug 1628677 - Crash in delete_passwdPolicy when persistent search connections are terminated unexpectedly

[1.3.7.5-27]
- Bump version to 1.3.7.5-27
- Resolves: Bug 1623247 - Crash in vslapd_log_emergency_error

[1.3.7.5-26]
- Bump version to 1.3.7.5-26
- Resolves: Bug 1615924 - Fine grained password policy can impact search performance
- Resolves: Bug 1614836 - Disable nunc-stans by default
- Resolves: Bug 1614861 - ldapsearch with server side sort crashes the ldap server


Related CVEs


CVE-2018-10850
CVE-2018-10935
CVE-2018-14624
CVE-2018-14638

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) 389-ds-base-1.3.7.5-28.el7_5.src.rpm4d06981d404587716a95835becbf8435ELBA-2021-0868
389-ds-base-1.3.7.5-28.el7_5.aarch64.rpm86f808671fd0007cbe2c53bc51877e99ELBA-2021-0868
389-ds-base-devel-1.3.7.5-28.el7_5.aarch64.rpmfa26eda7f7bc2865a924927f4cc3a935ELBA-2021-0868
389-ds-base-libs-1.3.7.5-28.el7_5.aarch64.rpm4d639694ee46a32b47a7d67b6d18980bELBA-2021-0868
389-ds-base-snmp-1.3.7.5-28.el7_5.aarch64.rpme35bd3fbf45a9ac23e18e20aba33e47fELBA-2021-0868
Oracle Linux 7 (x86_64) 389-ds-base-1.3.7.5-28.el7_5.src.rpm4d06981d404587716a95835becbf8435ELBA-2021-0868
389-ds-base-1.3.7.5-28.el7_5.x86_64.rpma24bf4efc63fa9a27e99b12cc6b8e3fdELBA-2021-0868
389-ds-base-devel-1.3.7.5-28.el7_5.x86_64.rpm743ed6cdb2909c49ca1858ff1fc03270ELBA-2021-0868
389-ds-base-libs-1.3.7.5-28.el7_5.x86_64.rpm66e8174c60d182dea315531a49187ff8ELBA-2021-0868
389-ds-base-snmp-1.3.7.5-28.el7_5.x86_64.rpmcf8be0295877609cd52467e7b23a7437ELBA-2021-0868



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete