Oval Definition:oval:org.opensuse.security:def:53200
Revision Date:2020-12-01Version:1
Title:Security update for 389-ds (Important)
Description:

This update for 389-ds fixes the following issues:

The following security vulnerabilities were addressed:

- CVE-2018-10850: Fixed a race condition on reference counter that would lead to a denial of service using persistent search (bsc#1096368) - CVE-2017-15134: Fixed a remote denial of service via search filters in slapi_filter_sprintf in slapd/util.c (bsc#1076530) - CVE-2017-15135: Fixed authentication bypass due to lack of size check in slapi_ct_memcmp function in ch_malloc.c (bsc#1076530) - CVE-2018-10935: Fixed an issue that allowed users to cause a crash via ldapsearch with server side sorts (bsc#1105606) - CVE-2018-14624: The lock controlling the error log was not correctly used when re-opening the log file in log__error_emergency(), allowing an attacker to send a flood of modifications to a very large DN, which could have caused slapd to crash (bsc#1106699).
Family:unixClass:patch
Status:Reference(s):1002998
1009026
1010395
1010401
1010402
1010404
1010410
1010422
1010427
1010517
1018128
1030263
1032114
1032120
1036453
1076530
1096368
1105606
1106699
1126088
1132666
1136035
927591
953382
953972
960249
962177
963964
963968
963975
964023
966271
968222
992549
CVE-2009-4029
CVE-2011-1946
CVE-2011-2483
CVE-2012-3355
CVE-2013-1985
CVE-2015-0458
CVE-2015-0459
CVE-2015-0460
CVE-2015-0469
CVE-2015-0477
CVE-2015-0478
CVE-2015-0480
CVE-2015-0484
CVE-2015-0488
CVE-2015-0491
CVE-2015-0492
CVE-2015-5198
CVE-2015-5199
CVE-2015-5200
CVE-2015-7560
CVE-2015-8629
CVE-2015-8630
CVE-2015-8631
CVE-2016-10220
CVE-2016-5285
CVE-2016-5290
CVE-2016-5291
CVE-2016-5296
CVE-2016-5297
CVE-2016-6318
CVE-2016-6354
CVE-2016-7945
CVE-2016-7946
CVE-2016-9064
CVE-2016-9066
CVE-2016-9074
CVE-2016-9601
CVE-2017-15134
CVE-2017-15135
CVE-2017-5951
CVE-2017-7207
CVE-2017-8291
CVE-2017-8422
CVE-2018-10850
CVE-2018-10935
CVE-2018-14624
CVE-2019-2614
CVE-2019-2627
CVE-2019-2628
SUSE-SU-2015:0789-1
SUSE-SU-2016:0429-1
SUSE-SU-2016:0816-1
SUSE-SU-2016:3014-1
SUSE-SU-2016:3047-1
SUSE-SU-2017:1404-1
SUSE-SU-2019:1207-1
SUSE-SU-2019:2020-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for Server Applications 15
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • NetworkManager-applet-1.8.10-lp150.3 is installed
  • OR NetworkManager-applet-lang-1.8.10-lp150.3 is installed
  • OR NetworkManager-connection-editor-1.8.10-lp150.3 is installed
  • OR libnm-gtk0-1.8.10-lp150.3 is installed
  • OR libnma0-1.8.10-lp150.3 is installed
  • OR nma-data-1.8.10-lp150.3 is installed
  • OR typelib-1_0-NMGtk-1_0-1.8.10-lp150.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • go1.12-1.12.12-lp151.2.25 is installed
  • OR go1.12-doc-1.12.12-lp151.2.25 is installed
  • OR go1.12-race-1.12.12-lp151.2.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • xorg-x11-libX11-7.4-5.11.11 is installed
  • OR xorg-x11-libX11-32bit-7.4-5.11.11 is installed
  • OR xorg-x11-libX11-devel-7.4-5.11.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • flash-player-11.2.202.418-0.3 is installed
  • OR flash-player-gnome-11.2.202.418-0.3 is installed
  • OR flash-player-kde4-11.2.202.418-0.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • flash-player-11.2.202.521-0.17 is installed
  • OR flash-player-gnome-11.2.202.521-0.17 is installed
  • OR flash-player-kde4-11.2.202.521-0.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.79-15 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.79-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libdcerpc-binding0-4.2.4-11 is installed
  • OR libdcerpc-binding0-32bit-4.2.4-11 is installed
  • OR libdcerpc0-4.2.4-11 is installed
  • OR libdcerpc0-32bit-4.2.4-11 is installed
  • OR libgensec0-4.2.4-11 is installed
  • OR libgensec0-32bit-4.2.4-11 is installed
  • OR libndr-krb5pac0-4.2.4-11 is installed
  • OR libndr-krb5pac0-32bit-4.2.4-11 is installed
  • OR libndr-nbt0-4.2.4-11 is installed
  • OR libndr-nbt0-32bit-4.2.4-11 is installed
  • OR libndr-standard0-4.2.4-11 is installed
  • OR libndr-standard0-32bit-4.2.4-11 is installed
  • OR libndr0-4.2.4-11 is installed
  • OR libndr0-32bit-4.2.4-11 is installed
  • OR libnetapi0-4.2.4-11 is installed
  • OR libnetapi0-32bit-4.2.4-11 is installed
  • OR libregistry0-4.2.4-11 is installed
  • OR libsamba-credentials0-4.2.4-11 is installed
  • OR libsamba-credentials0-32bit-4.2.4-11 is installed
  • OR libsamba-hostconfig0-4.2.4-11 is installed
  • OR libsamba-hostconfig0-32bit-4.2.4-11 is installed
  • OR libsamba-passdb0-4.2.4-11 is installed
  • OR libsamba-passdb0-32bit-4.2.4-11 is installed
  • OR libsamba-util0-4.2.4-11 is installed
  • OR libsamba-util0-32bit-4.2.4-11 is installed
  • OR libsamdb0-4.2.4-11 is installed
  • OR libsamdb0-32bit-4.2.4-11 is installed
  • OR libsmbclient-raw0-4.2.4-11 is installed
  • OR libsmbclient-raw0-32bit-4.2.4-11 is installed
  • OR libsmbclient0-4.2.4-11 is installed
  • OR libsmbclient0-32bit-4.2.4-11 is installed
  • OR libsmbconf0-4.2.4-11 is installed
  • OR libsmbconf0-32bit-4.2.4-11 is installed
  • OR libsmbldap0-4.2.4-11 is installed
  • OR libsmbldap0-32bit-4.2.4-11 is installed
  • OR libtevent-util0-4.2.4-11 is installed
  • OR libtevent-util0-32bit-4.2.4-11 is installed
  • OR libwbclient0-4.2.4-11 is installed
  • OR libwbclient0-32bit-4.2.4-11 is installed
  • OR samba-4.2.4-11 is installed
  • OR samba-32bit-4.2.4-11 is installed
  • OR samba-client-4.2.4-11 is installed
  • OR samba-client-32bit-4.2.4-11 is installed
  • OR samba-doc-4.2.4-11 is installed
  • OR samba-libs-4.2.4-11 is installed
  • OR samba-libs-32bit-4.2.4-11 is installed
  • OR samba-winbind-4.2.4-11 is installed
  • OR samba-winbind-32bit-4.2.4-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • libgnomesu-2.0.0-353.6 is installed
  • OR libgnomesu-lang-2.0.0-353.6 is installed
  • OR libgnomesu0-2.0.0-353.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • cracklib-2.9.0-7 is installed
  • OR libcrack2-2.9.0-7 is installed
  • OR libcrack2-32bit-2.9.0-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • libkde4-4.12.0-10 is installed
  • OR libkde4-32bit-4.12.0-10 is installed
  • OR libkdecore4-4.12.0-10 is installed
  • OR libkdecore4-32bit-4.12.0-10 is installed
  • OR libksuseinstall1-4.12.0-10 is installed
  • OR libksuseinstall1-32bit-4.12.0-10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 is installed
  • AND Package Information
  • 389-ds-1.4.0.3-4.7 is installed
  • OR 389-ds-devel-1.4.0.3-4.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • libmariadb-devel-3.1.2-3.9 is installed
  • OR libmariadb_plugins-3.1.2-3.9 is installed
  • OR libmysqld-devel-10.2.25-3.17 is installed
  • OR libmysqld19-10.2.25-3.17 is installed
  • OR mariadb-10.2.25-3.17 is installed
  • OR mariadb-client-10.2.25-3.17 is installed
  • OR mariadb-connector-c-3.1.2-3.9 is installed
  • OR mariadb-errormessages-10.2.25-3.17 is installed
  • OR mariadb-tools-10.2.25-3.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND apache2-mod_perl-2.0.8-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_48-default-9-2 is installed
  • OR kgraft-patch-3_12_74-60_64_48-xen-9-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_17-9-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • gnutls-3.2.15-11 is installed
  • OR libgnutls-openssl27-3.2.15-11 is installed
  • OR libgnutls28-3.2.15-11 is installed
  • OR libgnutls28-32bit-3.2.15-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • MozillaFirefox-52.8.0esr-109.31 is installed
  • OR MozillaFirefox-devel-52.8.0esr-109.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • qemu-2.6.2-41.40 is installed
  • OR qemu-block-curl-2.6.2-41.40 is installed
  • OR qemu-block-rbd-2.6.2-41.40 is installed
  • OR qemu-block-ssh-2.6.2-41.40 is installed
  • OR qemu-guest-agent-2.6.2-41.40 is installed
  • OR qemu-ipxe-1.0.0-41.40 is installed
  • OR qemu-kvm-2.6.2-41.40 is installed
  • OR qemu-lang-2.6.2-41.40 is installed
  • OR qemu-seabios-1.9.1-41.40 is installed
  • OR qemu-sgabios-8-41.40 is installed
  • OR qemu-tools-2.6.2-41.40 is installed
  • OR qemu-vgabios-1.9.1-41.40 is installed
  • OR qemu-x86-2.6.2-41.40 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libecpg6-10.5-1.3 is installed
  • OR libpq5-10.5-1.3 is installed
  • OR libpq5-32bit-10.5-1.3 is installed
  • OR postgresql-init-10-17.20 is installed
  • OR postgresql10-10.5-1.3 is installed
  • OR postgresql10-contrib-10.5-1.3 is installed
  • OR postgresql10-docs-10.5-1.3 is installed
  • OR postgresql10-libs-10.5-1.3 is installed
  • OR postgresql10-server-10.5-1.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND chrony-2.3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.222-27.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_176-94_88-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_24-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_178-94_91-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_25-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • rsyslog-8.24.0-3.7 is installed
  • OR rsyslog-diag-tools-8.24.0-3.7 is installed
  • OR rsyslog-doc-8.24.0-3.7 is installed
  • OR rsyslog-module-gssapi-8.24.0-3.7 is installed
  • OR rsyslog-module-gtls-8.24.0-3.7 is installed
  • OR rsyslog-module-mysql-8.24.0-3.7 is installed
  • OR rsyslog-module-pgsql-8.24.0-3.7 is installed
  • OR rsyslog-module-relp-8.24.0-3.7 is installed
  • OR rsyslog-module-snmp-8.24.0-3.7 is installed
  • OR rsyslog-module-udpspoof-8.24.0-3.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • cracklib-2.9.0-7 is installed
  • OR libcrack2-2.9.0-7 is installed
  • OR libcrack2-32bit-2.9.0-7 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • openstack-designate-1.0.3~a0~dev10-6 is installed
  • OR openstack-designate-agent-1.0.3~a0~dev10-6 is installed
  • OR openstack-designate-api-1.0.3~a0~dev10-6 is installed
  • OR openstack-designate-central-1.0.3~a0~dev10-6 is installed
  • OR openstack-designate-doc-1.0.3~a0~dev10-6 is installed
  • OR openstack-designate-sink-1.0.3~a0~dev10-6 is installed
  • OR openstack-ironic-4.2.5-6 is installed
  • OR openstack-ironic-api-4.2.5-6 is installed
  • OR openstack-ironic-conductor-4.2.5-6 is installed
  • OR openstack-ironic-doc-4.2.5-6 is installed
  • OR openstack-neutron-vpn-agent-7.0.5~a0~dev3-6 is installed
  • OR openstack-neutron-vpnaas-7.0.5~a0~dev3-6 is installed
  • OR openstack-neutron-vpnaas-doc-7.0.5~a0~dev3-6 is installed
  • OR openstack-nova-docker-0.0.1~a0~dev238-4 is installed
  • OR openstack-sahara-3.0.3~a0~dev1-6 is installed
  • OR openstack-sahara-api-3.0.3~a0~dev1-6 is installed
  • OR openstack-sahara-doc-3.0.3~a0~dev1-6 is installed
  • OR openstack-sahara-engine-3.0.3~a0~dev1-6 is installed
  • OR openstack-tempest-7.0.0-9 is installed
  • OR openstack-tempest-test-7.0.0-9 is installed
  • OR openstack-trove-4.0.1~a0~dev19-8 is installed
  • OR openstack-trove-api-4.0.1~a0~dev19-8 is installed
  • OR openstack-trove-conductor-4.0.1~a0~dev19-8 is installed
  • OR openstack-trove-doc-4.0.1~a0~dev19-8 is installed
  • OR openstack-trove-guestagent-4.0.1~a0~dev19-8 is installed
  • OR openstack-trove-taskmanager-4.0.1~a0~dev19-8 is installed
  • OR python-designate-1.0.3~a0~dev10-6 is installed
  • OR python-ironic-4.2.5-6 is installed
  • OR python-neutron-vpnaas-7.0.5~a0~dev3-6 is installed
  • OR python-sahara-3.0.3~a0~dev1-6 is installed
  • OR python-tempest-7.0.0-9 is installed
  • OR python-trove-4.0.1~a0~dev19-8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND python-Pillow-2.8.1-4.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • mariadb-10.2.22-4.11 is installed
  • OR mariadb-client-10.2.22-4.11 is installed
  • OR mariadb-errormessages-10.2.22-4.11 is installed
  • OR mariadb-galera-10.2.22-4.11 is installed
  • OR mariadb-tools-10.2.22-4.11 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • kafka-0.10.2.2-5.6 is installed
  • OR openstack-monasca-api-2.2.1~dev24-3.6 is installed
  • OR python-monasca-api-2.2.1~dev24-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-Django1-1.11.20-3.3 is installed
  • BACK