Description: | Updated openldap packages that fix a security issue are now available forRed Hat Enterprise Linux 4 and 5.This update has been rated as having important security impact by the RedHat Security Response Team.OpenLDAP is an open source suite of Lightweight Directory Access Protocol(LDAP) applications and development tools. LDAP is a set of protocols foraccessing directory services.A denial of service flaw was found in the way the OpenLDAP slapd daemonprocessed certain network messages. An unauthenticated remote attackercould send a specially crafted request that would crash the slapd daemon.(CVE-2008-2952)Users of openldap should upgrade to these updated packages, which contain abackported patch to correct this issue. |