[Bug 1446809] Re: [SRU] denial of service via an LDAP search query with attrsOnly set to true (CVE-2012-1164)

Felipe Reyes 1446809 at bugs.launchpad.net
Tue May 19 20:29:07 UTC 2015


On Tue, 19 May 2015 19:56:07 -0000
Ryan Tandy <1446809 at bugs.launchpad.net> wrote:

> The precise debdiff adds
> d/p/0001-ITS-7723-fix-reference-counting.patch which is the same as
> CVE-2013-4449.patch but not used in d/p/series.
Right, my bad, a leftover of an import I dismissed. Do you want me to
reupload the patch?

Best,

-- 
Felipe Reyes
Software Sustaining Engineer @ Canonical
STS Engineering Team
# Email: felipe.reyes at canonical.com (GPG:0x9B1FFF39)
# Phone: +56 9 7640 7887
# Launchpad: ~freyes | IRC: freyes

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openldap in Ubuntu.
https://bugs.launchpad.net/bugs/1446809

Title:
  [SRU] denial of service via an LDAP search query (CVE-2012-1164,
  CVE-2013-4449, CVE-2015-1545)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/1446809/+subscriptions



More information about the Ubuntu-server-bugs mailing list