Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

OpenLDAP Authenticated User Object Attribute Deletion Vulnerability

Solution:
This vulnerability is eliminated in OpenLDAP 2.0.21. Red Hat and Conectiva have also released upgraded packages.

It should be noted that Red Hat 7.0 shipped with OpenLDAP version 1.2.11. An update upgraded this to version 2.0.11. Version 1.2.11 is not vulnerable. The newer fix should still be applied even if the 2.0.11 upgrade was not installed. Red Hat 7.1 originally shipped with version 2.0.7. An update upgraded this to version 2.0.11.

Users of HP Secure Linux 1.0 are advised to upgrade using the fixes supplied by Red Hat (listed below).

Additional upgrades are available.


OpenLDAP OpenLDAP 2.0

OpenLDAP OpenLDAP 2.0.1

OpenLDAP OpenLDAP 2.0.10

OpenLDAP OpenLDAP 2.0.11 -9

OpenLDAP OpenLDAP 2.0.11

OpenLDAP OpenLDAP 2.0.12

OpenLDAP OpenLDAP 2.0.13

OpenLDAP OpenLDAP 2.0.14

OpenLDAP OpenLDAP 2.0.15

OpenLDAP OpenLDAP 2.0.16

OpenLDAP OpenLDAP 2.0.17

OpenLDAP OpenLDAP 2.0.18

OpenLDAP OpenLDAP 2.0.19

OpenLDAP OpenLDAP 2.0.2

OpenLDAP OpenLDAP 2.0.20

OpenLDAP OpenLDAP 2.0.3

OpenLDAP OpenLDAP 2.0.4

OpenLDAP OpenLDAP 2.0.5

OpenLDAP OpenLDAP 2.0.6

OpenLDAP OpenLDAP 2.0.7

OpenLDAP OpenLDAP 2.0.8

OpenLDAP OpenLDAP 2.0.9







 

Privacy Statement
Copyright 2009, SecurityFocus