[CLSA-2023:1695834945] openldap: Fix of 2 CVEs
Type:
security
Severity:
Critical
Release date:
2023-09-27
Description:
- CVE-2022-29155: fix a SQL injection vulnerability in the back-sql backend to slapd - CVE-2021-27212: fix denial of service (daemon exit) via a short timestamp if slapd is used
Updated packages:
  • openldap-2.4.44-25.el7_9.tuxcare.els1.i686.rpm
    sha:0beede14b5e790fa644584fa5a5bd1cec5f4e8fc
  • openldap-2.4.44-25.el7_9.tuxcare.els1.x86_64.rpm
    sha:06fb1dbfdcc3a325f7a696c9d17bca97db4190b8
  • openldap-clients-2.4.44-25.el7_9.tuxcare.els1.x86_64.rpm
    sha:26a14c009d0962993942268ff93f44a5a8af3bd8
  • openldap-devel-2.4.44-25.el7_9.tuxcare.els1.i686.rpm
    sha:2dae8e81a8676d1301332623de4f1f84a5ad2cf4
  • openldap-devel-2.4.44-25.el7_9.tuxcare.els1.x86_64.rpm
    sha:674b5b06c67e95972dcbb5f8acd18147555d4ece
  • openldap-servers-2.4.44-25.el7_9.tuxcare.els1.x86_64.rpm
    sha:160aa15e0841c681425725ac038d7e956a737ede
  • openldap-servers-sql-2.4.44-25.el7_9.tuxcare.els1.x86_64.rpm
    sha:9b66fff95147f17a9309700f9290481046d32efe
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.