[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2021:3807 -- centos 7 389-ds-base

ID: oval:org.secpod.oval:def:205901Date: (C)2021-11-23   (M)2023-09-27
Class: PATCHFamily: unix




389 Directory Server is an LDAP version 3 compliant server. The base packages include the Lightweight Directory Access Protocol server and command-line utilities for server administration. Security Fix: * 389-ds-base: CRYPT password hash with asterisk allows any bind attempt to succeed For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Bug Fix: * A plugin can create an index. Even if the index can be used immediately the index remains offline until further reindex * In some rare case, a replication connection may be treated as a regular connection and ACIs evaluated even if they should not. * A regular connection can be erroneously flagged replication connection

Platform:
CentOS 7
Product:
389-ds-base
Reference:
CESA-2021:3807
CVE-2021-3652
CVE    1
CVE-2021-3652
CPE    2
cpe:/a:fedoraproject:389_directory_server
cpe:/o:centos:centos:7

© SecPod Technologies