Accepted openldap2.2 2.2.26-5ubuntu3 (source)

Martin Pitt martin.pitt at ubuntu.com
Wed Oct 11 14:15:11 BST 2006


Accepted:
 OK: openldap2.2_2.2.26-5ubuntu3.dsc
     -> Component: main Section: net
 OK: openldap2.2_2.2.26-5ubuntu3.diff.gz

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Mon, 26 Jun 2006 11:37:55 +0000
Source: openldap2.2
Binary: slapd ldap-utils libldap-2.2-7
Architecture: source
Version: 2.2.26-5ubuntu3
Distribution: edgy
Urgency: low
Maintainer: Torsten Landschoff <torsten at debian.org>
Changed-By: Martin Pitt <martin.pitt at ubuntu.com>
Description: 
 ldap-utils - OpenLDAP utilities
 libldap-2.2-7 - OpenLDAP libraries
 slapd      - OpenLDAP server (slapd)
Changes: 
 openldap2.2 (2.2.26-5ubuntu3) edgy; urgency=low
 .
   * SECURITY UPDATE: Crash/arbitrary code execution with crafted host names.
   * servers/slurpd/st.c, St_read():
     - Do not sprintf arbitrarily long strings into fixed-size tbuf.
     - Patch ported from upstream CVS commit:
       http://www.openldap.org/devel/cvsweb.cgi/servers/slurpd/st.c.diff?
       r1=1.21&r2=1.22&hideattic=1&sortbydate=0&f=u
     - CVE-2006-2754
Files: 
 a7318aab6168992395b07e026f38bb37 1016 net optional openldap2.2_2.2.26-5ubuntu3.dsc
 932c2e9b19b7f03707fa2779dd50bd95 515412 net optional openldap2.2_2.2.26-5ubuntu3.diff.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)

iD8DBQFFLOrMDecnbV4Fd/IRAl7YAKCga+i0ShNf6UsvcRrjTxFUiPFFpQCfYj1X
7PNQ42UnAwBFNzwc2bPRo/8=
=7P1o
-----END PGP SIGNATURE-----





More information about the edgy-changes mailing list