~ubuntu-branches/ubuntu/oneiric/openldap/oneiric-security

Viewing all changes in revision 36.

  • Committer: Bazaar Package Importer
  • Author(s): Jamie Strandboge
  • Date: 2011-04-07 11:36:53 UTC
  • Revision ID: james.westby@ubuntu.com-20110407113653-3g7j4eatbljge33l
Tags: 2.4.23-6ubuntu6
* SECURITY UPDATE: fix successful anonymous bind via chain overlay when
  using forwarded authentication failures
  - debian/patches/CVE-2011-1024
  - CVE-2011-1024
* SECURITY UPDATE: verify password when authenticating to rootdn and using ndb
  backend. Note: Ubuntu is not compiled with --enable-ndb by default
  - debian/patches/CVE-2011-1025
  - CVE-2011-1025
* SECURITY UPDATE: fix DoS when processing unauthenticated modrdn requests
  and requestDN is empty
  - debian/patches/CVE-2011-1081
  - CVE-2011-1081
  - LP: #742104

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: