Release date:
2025-09-23 14:10:55 UTC
Description:
- Rebase to 2.4.58 to fix the following vulnerabilities:
- CVE-2020-12243: fix denial of service caused by LDAP search filters with nested
boolean expressions
- CVE-2020-36221: fix integer underflow in the Certificate Exact Assertion processing
- CVE-2020-36223: fix slapd crash in the Values Return Filter control handling
- CVE-2020-36226: fix slapd crash in the saslAuthzTo processing
- CVE-2020-36228: fix slapd crash in the Certificate List Exact Assertion processing
- CVE-2020-36225: fix double free and slapd crash in the saslAuthzTo processing
- CVE-2020-36227: fix infinite loop in slapd with the cancel_extop Cancel operation
- CVE-2020-36230: fix assertion failure in slapd in the X.509 DN parsing in decode.c
- CVE-2020-25692: fix NULL pointer dereference during a request for renaming RDNs
- CVE-2020-25709: fix assertion failure caused by processing malicious packet
- CVE-2020-36224: fix invalid pointer free and slapd crash in the saslAuthzTo
processing
- CVE-2020-36229: fix slapd crash in the X.509 DN parsing in ad_keystring
- CVE-2020-25710: fix failed assertion in csnNormalize23()
- CVE-2020-36222: fix assertion failure in slapd in the saslAuthzTo validation
Updated packages:
-
openldap-2.4.58-1.el6.tuxcare.els1.i686.rpm
sha:1372570f3539ce4b7b561ac6118ecb120226b5647c63f5022d699d5ca6ea6f4b
-
openldap-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
sha:3305af4bc148709afcb223ae2f85d35fed6a2a3840997460e12a118fb9f3559a
-
openldap-clients-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
sha:517ff62270576c40ff3bd6070bc021e232c46a337ff3160b3a20ab6242ef36df
-
openldap-devel-2.4.58-1.el6.tuxcare.els1.i686.rpm
sha:3526ed304aecdf1fe37e0f4ecee9ef6eae2e8cdf142648e278d8d91f2f0de9bc
-
openldap-devel-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
sha:333caa15db04bd5ca29ddfb55421ed4cd6848c242a3e452d2dcdecbf5a7d0e6b
-
openldap-servers-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
sha:f00666362fed1c02cf25eedd0ab8070cab76f0f7c72e6fd4c402fc4d01331cd1
-
openldap-servers-sql-2.4.58-1.el6.tuxcare.els1.x86_64.rpm
sha:3b0e05a9a8b08c46eadc8e2b2ec0d14c535cd07e455c8523f8593ad02ac2b304
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.