Oval Definition:oval:org.mitre.oval:def:8052
Revision Date:2014-06-23Version:18
Title:DSA-1517 ldapscripts -- programming error
Description:Don Armstrong discovered that ldapscripts, a suite of tools to manipulate user accounts in LDAP, sends the password as a command line argument when calling LDAP programs, which may allow a local attacker to read this password from the process listing. The old stable distribution (sarge) does not contain an ldapscripts package.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2007-5373
DSA-1517
Platform(s):Debian GNU/Linux 4.0
Product(s):ldapscripts
Definition Synopsis
  • Debian GNU/Linux 4.0 is installed.
  • AND Installed architecture is all
  • AND ldapscripts is earlier than 1.4-2etch1
  • BACK