[CLSA-2025:1758645818] openldap: Fix of 14 CVEs
Type:
security
Severity:
Important
Release date:
2025-09-23 16:43:42 UTC
Description:
- Rebase to 2.4.58 to fix the following vulnerabilities: - CVE-2020-12243: fix denial of service caused by LDAP search filters with nested boolean expressions - CVE-2020-36221: fix integer underflow in the Certificate Exact Assertion processing - CVE-2020-36223: fix slapd crash in the Values Return Filter control handling - CVE-2020-36226: fix slapd crash in the saslAuthzTo processing - CVE-2020-36228: fix slapd crash in the Certificate List Exact Assertion processing - CVE-2020-36225: fix double free and slapd crash in the saslAuthzTo processing - CVE-2020-36227: fix infinite loop in slapd with the cancel_extop Cancel operation - CVE-2020-36230: fix assertion failure in slapd in the X.509 DN parsing in decode.c - CVE-2020-25692: fix NULL pointer dereference during a request for renaming RDNs - CVE-2020-25709: fix assertion failure caused by processing malicious packet - CVE-2020-36224: fix invalid pointer free and slapd crash in the saslAuthzTo processing - CVE-2020-36229: fix slapd crash in the X.509 DN parsing in ad_keystring - CVE-2020-25710: fix failed assertion in csnNormalize23() - CVE-2020-36222: fix assertion failure in slapd in the saslAuthzTo validation
Updated packages:
  • openldap-2.4.58-1.el6.tuxcare.els1.i686.rpm
    sha:711d7ebb88315bba8c9a47c25adddd30aa2dea1b79f88f3ed3ef5e2b03b4dee6
  • openldap-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
    sha:e55ea64b3140aca829b9af805f41fba027101fb66bdba8b77fdc9611e6546b39
  • openldap-clients-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
    sha:a3eaa69475b135027e3c87fef18a0bbd618530116193189660ccaead98fe5e7c
  • openldap-devel-2.4.58-1.el6.tuxcare.els1.i686.rpm
    sha:688143fc1315e84026a79c4d877b01d84a8bdd12b7bb70f835c21724d5098054
  • openldap-devel-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
    sha:a495e7ea44b6a15db33efa89f96c03f4c0a00d0bef4461f4c009bbf5bae889dc
  • openldap-servers-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
    sha:7f2ecf30a63a00403b8fa76bb08ab798a5574602df48e9865a12618215ced80a
  • openldap-servers-sql-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
    sha:db534de362de6290a5c792a86869c52b95bfe6c71dbb8c0f44fdbaebb39c3aa6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.