[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2018:0515 -- centos 6 389-ds-base

ID: oval:org.secpod.oval:def:204768Date: (C)2018-03-19   (M)2023-07-28
Class: PATCHFamily: unix




389 Directory Server is an LDAP version 3 compliant server. The base packages include the Lightweight Directory Access Protocol server and command-line utilities for server administration. Security Fix: * 389-ds-base: remote Denial of Service via search filters in SetUnicodeStringFromUTF_8 in collate.c * 389-ds-base: Authentication bypass due to lack of size check in slapi_ct_memcmp function in ch_malloc.c For more details about the security issue, including the impact, a CVSS score, and other related information, refer to the CVE page listed in the References section. The CVE-2017-15135 issue was discovered by Martin Poole .

Platform:
CentOS 6
Product:
389-ds-base
Reference:
CESA-2018:0515
CVE-2017-15135
CVE-2018-1054
CVE    2
CVE-2017-15135
CVE-2018-1054
CPE    2
cpe:/o:centos:centos:6
cpe:/a:fedoraproject:389_directory_server

© SecPod Technologies