ALT-BU-2021-3748-1
Branch p9 update bulletin.
Closed vulnerabilities
BDU:2021-01803
Уязвимость процесса slapd пакета OpenLDAP, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-06383
Уязвимость открытой реализации протокола OpenLDAP, связанная с ошибкой управления ресурсами, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06384
Уязвимость протокола OpenLDAP, связанная с повторным освобождением памяти, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06385
Уязвимость реализации протокола OpenLDAP, связанная с целочисленной потерей значимости, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06399
Уязвимость открытой реализации протокола OpenLDAP, связанная с освобождением недопустимого указателя или ссылки, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06400
Уязвимость открытой реализации протокола OpenLDAP, связанная с достижимым утверждением при синтаксическом анализе, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06401
Уязвимость открытой реализации протокола OpenLDAP, связанная с доступом к ресурсу с использованием несовместимого типа, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06402
Уязвимость открытой реализации протокола OpenLDAP, связанная с целочисленной потерей значимости, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06403
Уязвимость открытой реализации протокола OpenLDAP, связанная с бесконечным циклом, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06404
Уязвимость протокола OpenLDAP, связанная с повторным освобождением памяти, позволяющая нарушителю выполнить отказ в обслуживании
BDU:2021-06405
Уязвимость открытой реализации протокола OpenLDAP, связанная с недостатком использования функции assert(), позволяющая нарушителю выполнить отказ в обслуживании
BDU:2022-00230
Уязвимость функции csnNormalize23() реализации протокола LDAP OpenLDAP, связанная с недостатком использования функции assert(), позволяющая нарушителю вызвать отказ в обслуживании
BDU:2022-00231
Уязвимость сервера slapd реализации протокола LDAP OpenLDAP, связанная с недостатком использования функции assert(), позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2020-25692
A NULL pointer dereference was found in OpenLDAP server and was fixed in openldap 2.4.55, during a request for renaming RDNs. An unauthenticated attacker could remotely crash the slapd process by sending a specially crafted request, causing a Denial of Service.
Modified: 2024-11-21
CVE-2020-25709
A flaw was found in OpenLDAP. This flaw allows an attacker who can send a malicious packet to be processed by OpenLDAP’s slapd server, to trigger an assertion failure. The highest threat from this vulnerability is to system availability.
- 20210201 APPLE-SA-2021-02-01-1 macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave
- 20210201 APPLE-SA-2021-02-01-1 macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave
- https://bugzilla.redhat.com/show_bug.cgi?id=1899675
- https://bugzilla.redhat.com/show_bug.cgi?id=1899675
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20201204 [SECURITY] [DLA 2481-1] openldap security update
- [debian-lts-announce] 20201204 [SECURITY] [DLA 2481-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210716-0003/
- https://security.netapp.com/advisory/ntap-20210716-0003/
- https://support.apple.com/kb/HT212147
- https://support.apple.com/kb/HT212147
- DSA-4792
- DSA-4792
Modified: 2024-11-21
CVE-2020-25710
A flaw was found in OpenLDAP in versions before 2.4.56. This flaw allows an attacker who sends a malicious packet processed by OpenLDAP to force a failed assertion in csnNormalize23(). The highest threat from this vulnerability is to system availability.
- https://bugzilla.redhat.com/show_bug.cgi?id=1899678
- https://bugzilla.redhat.com/show_bug.cgi?id=1899678
- https://git.openldap.org/openldap/openldap/-/commit/ab3915154e69920d480205b4bf5ccb2b391a0a1f#a2feb6ed0257c21c6672793ee2f94eaadc10c72c
- https://git.openldap.org/openldap/openldap/-/commit/ab3915154e69920d480205b4bf5ccb2b391a0a1f#a2feb6ed0257c21c6672793ee2f94eaadc10c72c
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20201204 [SECURITY] [DLA 2481-1] openldap security update
- [debian-lts-announce] 20201204 [SECURITY] [DLA 2481-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210716-0003/
- https://security.netapp.com/advisory/ntap-20210716-0003/
- DSA-4792
- DSA-4792
Modified: 2024-11-21
CVE-2020-36221
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the Certificate Exact Assertion processing, resulting in denial of service (schema_init.c serialNumberAndIssuerCheck).
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9404
- https://bugs.openldap.org/show_bug.cgi?id=9404
- https://bugs.openldap.org/show_bug.cgi?id=9424
- https://bugs.openldap.org/show_bug.cgi?id=9424
- https://git.openldap.org/openldap/openldap/-/commit/38ac838e4150c626bbfa0082b7e2cf3a2bb4df31
- https://git.openldap.org/openldap/openldap/-/commit/38ac838e4150c626bbfa0082b7e2cf3a2bb4df31
- https://git.openldap.org/openldap/openldap/-/commit/58c1748e81c843c5b6e61648d2a4d1d82b47e842
- https://git.openldap.org/openldap/openldap/-/commit/58c1748e81c843c5b6e61648d2a4d1d82b47e842
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36222
A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, resulting in denial of service.
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9406
- https://bugs.openldap.org/show_bug.cgi?id=9406
- https://bugs.openldap.org/show_bug.cgi?id=9407
- https://bugs.openldap.org/show_bug.cgi?id=9407
- https://git.openldap.org/openldap/openldap/-/commit/02dfc32d658fadc25e4040f78e36592f6e1e1ca0
- https://git.openldap.org/openldap/openldap/-/commit/02dfc32d658fadc25e4040f78e36592f6e1e1ca0
- https://git.openldap.org/openldap/openldap/-/commit/6ed057b5b728b50746c869bcc9c1f85d0bbbf6ed
- https://git.openldap.org/openldap/openldap/-/commit/6ed057b5b728b50746c869bcc9c1f85d0bbbf6ed
- https://git.openldap.org/openldap/openldap/-/commit/6ed057b5b728b50746c869bcc9c1f85d0bbbf6ed.aa
- https://git.openldap.org/openldap/openldap/-/commit/6ed057b5b728b50746c869bcc9c1f85d0bbbf6ed.aa
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36223
A flaw was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Values Return Filter control handling, resulting in denial of service (double free and out-of-bounds read).
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9408
- https://bugs.openldap.org/show_bug.cgi?id=9408
- https://git.openldap.org/openldap/openldap/-/commit/21981053a1195ae1555e23df4d9ac68d34ede9dd
- https://git.openldap.org/openldap/openldap/-/commit/21981053a1195ae1555e23df4d9ac68d34ede9dd
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36224
A flaw was discovered in OpenLDAP before 2.4.57 leading to an invalid pointer free and slapd crash in the saslAuthzTo processing, resulting in denial of service.
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9409
- https://bugs.openldap.org/show_bug.cgi?id=9409
- https://git.openldap.org/openldap/openldap/-/commit/554dff1927176579d652f2fe60c90e9abbad4c65
- https://git.openldap.org/openldap/openldap/-/commit/554dff1927176579d652f2fe60c90e9abbad4c65
- https://git.openldap.org/openldap/openldap/-/commit/5a2017d4e61a6ddc4dcb4415028e0d08eb6bca26
- https://git.openldap.org/openldap/openldap/-/commit/5a2017d4e61a6ddc4dcb4415028e0d08eb6bca26
- https://git.openldap.org/openldap/openldap/-/commit/c0b61a9486508e5202aa2e0cfb68c9813731b439
- https://git.openldap.org/openldap/openldap/-/commit/c0b61a9486508e5202aa2e0cfb68c9813731b439
- https://git.openldap.org/openldap/openldap/-/commit/d169e7958a3e0dc70f59c8374bf8a59833b7bdd8
- https://git.openldap.org/openldap/openldap/-/commit/d169e7958a3e0dc70f59c8374bf8a59833b7bdd8
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36225
A flaw was discovered in OpenLDAP before 2.4.57 leading to a double free and slapd crash in the saslAuthzTo processing, resulting in denial of service.
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9412
- https://bugs.openldap.org/show_bug.cgi?id=9412
- https://git.openldap.org/openldap/openldap/-/commit/554dff1927176579d652f2fe60c90e9abbad4c65
- https://git.openldap.org/openldap/openldap/-/commit/554dff1927176579d652f2fe60c90e9abbad4c65
- https://git.openldap.org/openldap/openldap/-/commit/5a2017d4e61a6ddc4dcb4415028e0d08eb6bca26
- https://git.openldap.org/openldap/openldap/-/commit/5a2017d4e61a6ddc4dcb4415028e0d08eb6bca26
- https://git.openldap.org/openldap/openldap/-/commit/c0b61a9486508e5202aa2e0cfb68c9813731b439
- https://git.openldap.org/openldap/openldap/-/commit/c0b61a9486508e5202aa2e0cfb68c9813731b439
- https://git.openldap.org/openldap/openldap/-/commit/d169e7958a3e0dc70f59c8374bf8a59833b7bdd8
- https://git.openldap.org/openldap/openldap/-/commit/d169e7958a3e0dc70f59c8374bf8a59833b7bdd8
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36226
A flaw was discovered in OpenLDAP before 2.4.57 leading to a memch->bv_len miscalculation and slapd crash in the saslAuthzTo processing, resulting in denial of service.
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9413
- https://bugs.openldap.org/show_bug.cgi?id=9413
- https://git.openldap.org/openldap/openldap/-/commit/554dff1927176579d652f2fe60c90e9abbad4c65
- https://git.openldap.org/openldap/openldap/-/commit/554dff1927176579d652f2fe60c90e9abbad4c65
- https://git.openldap.org/openldap/openldap/-/commit/5a2017d4e61a6ddc4dcb4415028e0d08eb6bca26
- https://git.openldap.org/openldap/openldap/-/commit/5a2017d4e61a6ddc4dcb4415028e0d08eb6bca26
- https://git.openldap.org/openldap/openldap/-/commit/c0b61a9486508e5202aa2e0cfb68c9813731b439
- https://git.openldap.org/openldap/openldap/-/commit/c0b61a9486508e5202aa2e0cfb68c9813731b439
- https://git.openldap.org/openldap/openldap/-/commit/d169e7958a3e0dc70f59c8374bf8a59833b7bdd8
- https://git.openldap.org/openldap/openldap/-/commit/d169e7958a3e0dc70f59c8374bf8a59833b7bdd8
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [guacamole-issues] 20210618 [jira] [Created] (GUACAMOLE-1368) Latest docker image fails security scans.
- [guacamole-issues] 20210618 [jira] [Created] (GUACAMOLE-1368) Latest docker image fails security scans.
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36227
A flaw was discovered in OpenLDAP before 2.4.57 leading to an infinite loop in slapd with the cancel_extop Cancel operation, resulting in denial of service.
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9428
- https://bugs.openldap.org/show_bug.cgi?id=9428
- https://git.openldap.org/openldap/openldap/-/commit/9d0e8485f3113505743baabf1167e01e4558ccf5
- https://git.openldap.org/openldap/openldap/-/commit/9d0e8485f3113505743baabf1167e01e4558ccf5
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36228
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Certificate List Exact Assertion processing, resulting in denial of service.
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9427
- https://bugs.openldap.org/show_bug.cgi?id=9427
- https://git.openldap.org/openldap/openldap/-/commit/91dccd25c347733b365adc74cb07d074512ed5ad
- https://git.openldap.org/openldap/openldap/-/commit/91dccd25c347733b365adc74cb07d074512ed5ad
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36229
A flaw was discovered in ldap_X509dn2bv in OpenLDAP before 2.4.57 leading to a slapd crash in the X.509 DN parsing in ad_keystring, resulting in denial of service.
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9425
- https://bugs.openldap.org/show_bug.cgi?id=9425
- https://git.openldap.org/openldap/openldap/-/commit/4bdfffd2889c0c5cdf58bebafbdc8fce4bb2bff0
- https://git.openldap.org/openldap/openldap/-/commit/4bdfffd2889c0c5cdf58bebafbdc8fce4bb2bff0
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Modified: 2024-11-21
CVE-2020-36230
A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service.
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-4 Security Update 2021-003 Catalina
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-3 Security Update 2021-004 Mojave
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- 20210526 APPLE-SA-2021-05-25-2 macOS Big Sur 11.4
- https://bugs.openldap.org/show_bug.cgi?id=9423
- https://bugs.openldap.org/show_bug.cgi?id=9423
- https://git.openldap.org/openldap/openldap/-/commit/8c1d96ee36ed98b32cd0e28b7069c7b8ea09d793
- https://git.openldap.org/openldap/openldap/-/commit/8c1d96ee36ed98b32cd0e28b7069c7b8ea09d793
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210629 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [bookkeeper-issues] 20210628 [GitHub] [bookkeeper] padma81 opened a new issue #2746: Security Vulnerabilities in CentOS 7 image, Upgrade image to CentOS 8
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- [debian-lts-announce] 20210203 [SECURITY] [DLA 2544-1] openldap security update
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://security.netapp.com/advisory/ntap-20210226-0002/
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212529
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212530
- https://support.apple.com/kb/HT212531
- https://support.apple.com/kb/HT212531
- DSA-4845
- DSA-4845
Closed bugs
Стриппается slapd для debuginfo
Closed bugs
Файловые конфликты с пакетом libxforms-demos
Closed bugs
Polkit не проверяет список групп пользователя, назначенныx через NSS.