| Summary: | 389-ds-base new security issues CVE-2024-3657 and CVE-2024-2199 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | Nicolas Salguero <nicolas.salguero> |
| Component: | Security | Assignee: | All Packagers <pkg-bugs> |
| Status: | NEW --- | QA Contact: | Sec team <security> |
| Severity: | normal | ||
| Priority: | Normal | ||
| Version: | Cauldron | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | MGA9TOO | ||
| Source RPM: | 389-ds-base-1.4.0.26-19.mga10.src.rpm | CVE: | CVE-2024-3657, CVE-2024-2199 |
| Status comment: | |||
|
Description
Nicolas Salguero
2024-06-13 09:45:45 CEST
Nicolas Salguero
2024-06-13 09:46:31 CEST
Source RPM:
(none) =>
389-ds-base-1.4.0.26-19.mga10.src.rpm An update for 389-ds-base is now available for Red Hat Enterprise Linux 9 "description" "A denial of service vulnerability was found in 389-ds-base ldap server. This issue may allow an authenticated user to cause a server crash while modifying `userPassword` using malformed input." ns-slapd crashing in ldap_mods_free() I cannot find the correction... BTAIM assigning this globally. Assignee:
bugsquad =>
pkg-bugs |