[ubuntu/focal-security] openldap 2.4.49+dfsg-2ubuntu1.9 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Tue May 17 11:41:20 UTC 2022


openldap (2.4.49+dfsg-2ubuntu1.9) focal-security; urgency=medium

  * SECURITY UPDATE: SQL injection in experimental back-sql backend
    - debian/patches/CVE-2022-29155.patch: escape filter values in
      servers/slapd/back-sql/search.c.
    - CVE-2022-29155

openldap (2.4.49+dfsg-2ubuntu1.8) focal; urgency=medium

  * d/p/ITS-8650-loop-on-incomplete-TLS-handshake.patch:
    Import upstream patch to properly retry gnutls_handshake() after it
    returns GNUTLS_E_AGAIN. (ITS#8650) (LP: #1921562)

Date: 2022-05-12 19:42:11.246035+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/openldap/2.4.49+dfsg-2ubuntu1.9
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list