SCIENTIFIC-LINUX-ERRATA Archives

August 2013

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Pat Riehecky <[log in to unmask]>
Reply To:
Date:
Wed, 28 Aug 2013 17:30:50 +0000
Content-Type:
text/plain
Parts/Attachments:
text/plain (32 lines)
Synopsis:          Important: 389-ds-base security update
Advisory ID:       SLSA-2013:1182-1
Issue Date:        2013-08-28
CVE Numbers:       CVE-2013-4283
--

It was discovered that the 389 Directory Server did not properly handle
the receipt of certain MOD operations with a bogus Distinguished Name
(DN). A remote, unauthenticated attacker could use this flaw to cause the
389 Directory Server to crash. (CVE-2013-4283)

After installing this update, the 389 server service will be restarted
automatically.
--

SL6
  x86_64
    389-ds-base-1.2.11.15-22.el6_4.x86_64.rpm
    389-ds-base-debuginfo-1.2.11.15-22.el6_4.i686.rpm
    389-ds-base-debuginfo-1.2.11.15-22.el6_4.x86_64.rpm
    389-ds-base-devel-1.2.11.15-22.el6_4.i686.rpm
    389-ds-base-devel-1.2.11.15-22.el6_4.x86_64.rpm
    389-ds-base-libs-1.2.11.15-22.el6_4.i686.rpm
    389-ds-base-libs-1.2.11.15-22.el6_4.x86_64.rpm
  i386
    389-ds-base-1.2.11.15-22.el6_4.i686.rpm
    389-ds-base-debuginfo-1.2.11.15-22.el6_4.i686.rpm
    389-ds-base-devel-1.2.11.15-22.el6_4.i686.rpm
    389-ds-base-libs-1.2.11.15-22.el6_4.i686.rpm

- Scientific Linux Development Team

ATOM RSS1 RSS2