shield
Security update for openldap2
SUSE-SLE-Module-Legacy-12-2015-273
openldap2 was updated to fix two security issues and one non-security bug. The following vulnerabilities were fixed: * A remote attacker could cause a denial of service through a NULL pointer dereference and crash via an empty attribute list in a deref control in a search request. (bnc#916897 CVE-2015-1545) * A remote attacker could cause a denial of service (crash) via a crafted search query with a matched values control. (bnc#916914 CVE-2015-1546) The following non-security issue was fixed: * Prevent connection-0 (internal connection) from showing up in the monitor backend (bnc#905959)
-
Release DateMay 18 2015
-
References
-
Typesecurity
-
Severitymoderate
cloud_download Downloads
Legacy Module 12 x86_64
-
Packagescompat-libldap-2_3-0
OpenLDAP Client Librariesopenldap22.3.37-16.1 lock rpm
The OpenLDAP Server2.4.39-16.1 lock src
Legacy Module 12 ppc64le
-
Packagescompat-libldap-2_3-0
OpenLDAP Client Librariesopenldap22.3.37-15.1 lock rpm
The OpenLDAP Server2.4.39-15.1 lock src
Legacy Module 12 s390x
-
Packagescompat-libldap-2_3-0
OpenLDAP Client Librariesopenldap22.3.37-16.1 lock rpm
The OpenLDAP Server2.4.39-16.1 lock src