OVMBA-2018-0141

OVMBA-2018-0141 - openldap bug fix update

Type:BUG
Severity:NA
Release Date:2018-06-06

Description


[2.4.40-16]
- NSS: re-register NSS_Shutdown callback (#1071520)

[2.4.40-15]
- ITS#8337 fix missing olcDbChecksum config attr (#1397961)
- ITS#8003 fix off-by-one in LDIF length (#1397949)

[2.4.40-14]
- NSS: use a hex number for some ciphersuite definitions (#1372357)
- NSS: fix OpenLDAP crash in NSS shutdown handling (#1373222)
- fix: rpm -V openldap-servers complains after a clean install (#1263220)

[2.4.40-13]
- NSS: fix setting olcTLSProtocolMin (#1249092)
- fix slapd crash in do_search (sc_writewait) (#1340861)
- NSS: fix parsing code (#1372349)
+ refactor ciphers-related patches
+ fix cipherstring parsing
- NSS: fix cipher suites' definitions (#1372357)
+ fix some ciphers' flags
+ add new ciphers to match the current NSS
+ add PSK and CHACHA20POLY1305 cipher strings

[2.4.40-12]
- fix regression: Including AESGCM ciphers in DEFAULT cipher string breaks SSF (#1300701)

[2.4.40-11]
- fix: OpenLDAP doesn't use sane (or default) cipher order (#1300701)
+ Add support for TLSv1.2, and SHA256 and SHA384 ciphers
+ Use what NSS considers default for DEFAULT cipher string.
+ Drop unnecessary hardcoded cipher suites' default flags
+ Update with TLSv1.2 ciphers
- revert: check_password minPoints parameter useless (#1255063)

[2.4.40-10]
- fix: update description in slapd.conf for NSS database related options (#1131094)
- fix: check_password minPoints parameter useless (#1255063)

[2.4.40-9]
- fix: Bad log levels in check_password module (#1255046)
- [rfe] add informational message about database backup when openldap is updated (#1261651)
- fix: id_query option is not available after rebasing openldap to 2.4.39 (#1288545)
- fix: We can't search expected entries from LDAP server (#1212283)

[2.4.40-8]
- fix: slapd crash in do_search (#1257543)
- Fix: Cannot build the package after libtool rebase (#1296129)

[2.4.40-7]
- fix: regression: deadlock during SSL_ForceHandshake when getting connection to replica (#1263477)
+ apply (and modify a little) the patch from commit 1eeaeeb7




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete