=========================================================================Ubuntu Security Notice USN-3307-2
July 19, 2017

openldap vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 12.04 ESM

Summary:

OpenLDAP could be made to crash if it received specially crafted
network traffic.

Software Description:
- openldap: OpenLDAP utilities

Details:

USN-3307-1 fixed a vulnerability in OpenLDAP. This update provides the
corresponding update for ubuntu 12.04 ESM.

Original advisory details:

 Karsten Heymann discovered that OpenLDAP incorrectly handled certain
 search requests. A remote attacker could use this issue to cause slapd
 to crash, resulting in a denial of service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 12.04 ESM:
  slapd                           2.4.28-1.1ubuntu4.8

In general, a standard system update will make all the necessary
changes.

References:
  https://ubuntu.com/security/notices/USN-3307-2
  https://ubuntu.com/security/notices/USN-3307-1
  CVE-2017-9287

Ubuntu 3307-2: OpenLDAP vulnerability

July 19, 2017
OpenLDAP could be made to crash if it received specially crafted network traffic.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 12.04 ESM:   slapd                           2.4.28-1.1ubuntu4.8 In general, a standard system update will make all the necessary changes.

References

  https://ubuntu.com/security/notices/USN-3307-2

  https://ubuntu.com/security/notices/USN-3307-1

  CVE-2017-9287

Severity
July 19, 2017

Package Information

Related News