Oval Definition:oval:org.opensuse.security:def:53504
Revision Date:2020-12-01Version:1
Title:Security update for openldap2 (Important)
Description:

This update for openldap2 fixes the following issues:

- CVE-2020-8023: Fixed a potential local privilege escalation from ldap to root when OPENLDAP_CONFIG_BACKEND='ldap' was used (bsc#1172698). - Changed DB_CONFIG to root:ldap permissions (bsc#1172704).
Family:unixClass:patch
Status:Reference(s):1019611
1022103
1032144
1047178
1054311
1057721
1057724
1068032
1172698
1172704
1177950
1178591
905959
916897
916914
974209
994157
999735
CVE-2009-1886
CVE-2009-1888
CVE-2009-2473
CVE-2009-2474
CVE-2009-2813
CVE-2009-2906
CVE-2009-2948
CVE-2010-0547
CVE-2010-0728
CVE-2010-0787
CVE-2010-0926
CVE-2010-1635
CVE-2010-1642
CVE-2010-2063
CVE-2010-3069
CVE-2010-3430
CVE-2010-3431
CVE-2010-3853
CVE-2011-0719
CVE-2011-2483
CVE-2011-2522
CVE-2011-2694
CVE-2011-3148
CVE-2011-3149
CVE-2011-3177
CVE-2012-0817
CVE-2012-0870
CVE-2012-1174
CVE-2012-1182
CVE-2012-2111
CVE-2012-6150
CVE-2013-0172
CVE-2013-0213
CVE-2013-0214
CVE-2013-0454
CVE-2013-1863
CVE-2013-4124
CVE-2013-4288
CVE-2013-4408
CVE-2013-4475
CVE-2013-4476
CVE-2013-4496
CVE-2013-6442
CVE-2013-7447
CVE-2014-0178
CVE-2014-0239
CVE-2014-0244
CVE-2014-2583
CVE-2014-3493
CVE-2014-3560
CVE-2014-8143
CVE-2015-0240
CVE-2015-1545
CVE-2015-1546
CVE-2015-3223
CVE-2015-3238
CVE-2015-5252
CVE-2015-5296
CVE-2015-5299
CVE-2015-5330
CVE-2015-5370
CVE-2015-7560
CVE-2015-8467
CVE-2015-8543
CVE-2016-0771
CVE-2016-10156
CVE-2016-1019
CVE-2016-2110
CVE-2016-2111
CVE-2016-2112
CVE-2016-2113
CVE-2016-2115
CVE-2016-2118
CVE-2016-2119
CVE-2016-2123
CVE-2016-2125
CVE-2016-2126
CVE-2016-6313
CVE-2016-7795
CVE-2017-1000024
CVE-2017-12837
CVE-2017-12883
CVE-2017-2619
CVE-2017-5225
CVE-2017-5715
CVE-2017-5950
CVE-2017-6512
CVE-2017-7494
CVE-2020-28368
CVE-2020-8023
SUSE-SU-2015:1077-1
SUSE-SU-2016:0990-1
SUSE-SU-2016:2345-1
SUSE-SU-2017:0453-1
SUSE-SU-2017:3092-1
SUSE-SU-2018:0036-1
SUSE-SU-2018:0631-1
SUSE-SU-2018:0637-1
SUSE-SU-2020:1856-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • fuse-2.9.7-lp150.1 is installed
  • OR libfuse2-2.9.7-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libu2f-host-1.1.6-lp151.2.3 is installed
  • OR libu2f-host-devel-1.1.6-lp151.2.3 is installed
  • OR libu2f-host-doc-1.1.6-lp151.2.3 is installed
  • OR libu2f-host0-1.1.6-lp151.2.3 is installed
  • OR u2f-host-1.1.6-lp151.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • MozillaFirefox-10.0.7-0.3 is installed
  • OR MozillaFirefox-branding-SLED-7-0.6.7 is installed
  • OR MozillaFirefox-translations-10.0.7-0.3 is installed
  • OR libfreebl3-3.13.6-0.5 is installed
  • OR libfreebl3-32bit-3.13.6-0.5 is installed
  • OR mozilla-nspr-4.9.2-0.6 is installed
  • OR mozilla-nspr-32bit-4.9.2-0.6 is installed
  • OR mozilla-nss-3.13.6-0.5 is installed
  • OR mozilla-nss-32bit-3.13.6-0.5 is installed
  • OR mozilla-nss-tools-3.13.6-0.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • bind-9.9.6P1-0.12 is installed
  • OR bind-libs-9.9.6P1-0.12 is installed
  • OR bind-libs-32bit-9.9.6P1-0.12 is installed
  • OR bind-utils-9.9.6P1-0.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • gtk2-2.18.9-0.39 is installed
  • OR gtk2-32bit-2.18.9-0.39 is installed
  • OR gtk2-lang-2.18.9-0.39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • libldap-2_4-2-2.4.39-16 is installed
  • OR libldap-2_4-2-32bit-2.4.39-16 is installed
  • OR openldap2-client-2.4.39-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libgcrypt-1.6.1-16.33 is installed
  • OR libgcrypt20-1.6.1-16.33 is installed
  • OR libgcrypt20-32bit-1.6.1-16.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • perl-5.18.2-12.3 is installed
  • OR perl-32bit-5.18.2-12.3 is installed
  • OR perl-base-5.18.2-12.3 is installed
  • OR perl-doc-5.18.2-12.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libdcerpc-binding0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libdcerpc-binding0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libdcerpc0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libdcerpc0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libndr-krb5pac0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libndr-krb5pac0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libndr-nbt0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libndr-nbt0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libndr-standard0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libndr-standard0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libndr0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libndr0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libnetapi0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libnetapi0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-credentials0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-credentials0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-errors0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-errors0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-hostconfig0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-hostconfig0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-passdb0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-passdb0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-util0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamba-util0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamdb0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsamdb0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsmbclient0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsmbclient0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsmbconf0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsmbconf0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsmbldap0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libsmbldap0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libtevent-util0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libtevent-util0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libwbclient0-4.6.5+git.27.6afd48b1083-2 is installed
  • OR libwbclient0-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR samba-4.6.5+git.27.6afd48b1083-2 is installed
  • OR samba-client-4.6.5+git.27.6afd48b1083-2 is installed
  • OR samba-client-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR samba-doc-4.6.5+git.27.6afd48b1083-2 is installed
  • OR samba-libs-4.6.5+git.27.6afd48b1083-2 is installed
  • OR samba-libs-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • OR samba-winbind-4.6.5+git.27.6afd48b1083-2 is installed
  • OR samba-winbind-32bit-4.6.5+git.27.6afd48b1083-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • gtk2-data-2.24.31-7 is installed
  • OR gtk2-lang-2.24.31-7 is installed
  • OR gtk2-tools-2.24.31-7 is installed
  • OR gtk2-tools-32bit-2.24.31-7 is installed
  • OR libgtk-2_0-0-2.24.31-7 is installed
  • OR libgtk-2_0-0-32bit-2.24.31-7 is installed
  • OR typelib-1_0-Gtk-2_0-2.24.31-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libXrandr2-1.4.2-3 is installed
  • OR libXrandr2-32bit-1.4.2-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • openvpn-2.3.8-16.20 is installed
  • OR openvpn-auth-pam-plugin-2.3.8-16.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • gdk-pixbuf-lang-2.34.0-16 is installed
  • OR gdk-pixbuf-query-loaders-2.34.0-16 is installed
  • OR gdk-pixbuf-query-loaders-32bit-2.34.0-16 is installed
  • OR libgdk_pixbuf-2_0-0-2.34.0-16 is installed
  • OR libgdk_pixbuf-2_0-0-32bit-2.34.0-16 is installed
  • OR typelib-1_0-GdkPixbuf-2_0-2.34.0-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND clamav-0.100.1-33.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_114-92_64-default-10-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_18-10-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_73-default-2-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_21-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND coolkey-1.1.0-147 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • gcc9-9.2.1+r275327-1.3 is installed
  • OR libasan5-9.2.1+r275327-1.3 is installed
  • OR libasan5-32bit-9.2.1+r275327-1.3 is installed
  • OR libatomic1-9.2.1+r275327-1.3 is installed
  • OR libatomic1-32bit-9.2.1+r275327-1.3 is installed
  • OR libgcc_s1-9.2.1+r275327-1.3 is installed
  • OR libgcc_s1-32bit-9.2.1+r275327-1.3 is installed
  • OR libgfortran5-9.2.1+r275327-1.3 is installed
  • OR libgfortran5-32bit-9.2.1+r275327-1.3 is installed
  • OR libgo14-9.2.1+r275327-1.3 is installed
  • OR libgo14-32bit-9.2.1+r275327-1.3 is installed
  • OR libgomp1-9.2.1+r275327-1.3 is installed
  • OR libgomp1-32bit-9.2.1+r275327-1.3 is installed
  • OR libitm1-9.2.1+r275327-1.3 is installed
  • OR libitm1-32bit-9.2.1+r275327-1.3 is installed
  • OR liblsan0-9.2.1+r275327-1.3 is installed
  • OR libquadmath0-9.2.1+r275327-1.3 is installed
  • OR libquadmath0-32bit-9.2.1+r275327-1.3 is installed
  • OR libstdc++6-9.2.1+r275327-1.3 is installed
  • OR libstdc++6-32bit-9.2.1+r275327-1.3 is installed
  • OR libstdc++6-locale-9.2.1+r275327-1.3 is installed
  • OR libtsan0-9.2.1+r275327-1.3 is installed
  • OR libubsan1-9.2.1+r275327-1.3 is installed
  • OR libubsan1-32bit-9.2.1+r275327-1.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • evince-3.20.2-6.27 is installed
  • OR evince-browser-plugin-3.20.2-6.27 is installed
  • OR evince-lang-3.20.2-6.27 is installed
  • OR evince-plugin-djvudocument-3.20.2-6.27 is installed
  • OR evince-plugin-dvidocument-3.20.2-6.27 is installed
  • OR evince-plugin-pdfdocument-3.20.2-6.27 is installed
  • OR evince-plugin-psdocument-3.20.2-6.27 is installed
  • OR evince-plugin-tiffdocument-3.20.2-6.27 is installed
  • OR evince-plugin-xpsdocument-3.20.2-6.27 is installed
  • OR libevdocument3-4-3.20.2-6.27 is installed
  • OR libevview3-3-3.20.2-6.27 is installed
  • OR nautilus-evince-3.20.2-6.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_178-94_91-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_25-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • gnome-shell-search-provider-nautilus-3.20.3-23.6 is installed
  • OR libnautilus-extension1-3.20.3-23.6 is installed
  • OR nautilus-3.20.3-23.6 is installed
  • OR nautilus-lang-3.20.3-23.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libIlmImf-Imf_2_1-21-2.1.0-6.3 is installed
  • OR openexr-2.1.0-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • libldap-2_4-2-2.4.46-9.31 is installed
  • OR libldap-2_4-2-32bit-2.4.46-9.31 is installed
  • OR libldap-data-2.4.46-9.31 is installed
  • OR openldap2-2.4.46-9.31 is installed
  • OR openldap2-back-meta-2.4.46-9.31 is installed
  • OR openldap2-back-perl-2.4.46-9.31 is installed
  • OR openldap2-client-2.4.46-9.31 is installed
  • OR openldap2-devel-2.4.46-9.31 is installed
  • OR openldap2-devel-32bit-2.4.46-9.31 is installed
  • OR openldap2-devel-static-2.4.46-9.31 is installed
  • OR openldap2-ppolicy-check-password-1.2-9.31 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND ruby2.1-rubygem-extlib-0.9.16-1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.181-27.26 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • glib2-2.48.2-12.15 is installed
  • OR glib2-lang-2.48.2-12.15 is installed
  • OR glib2-tools-2.48.2-12.15 is installed
  • OR libgio-2_0-0-2.48.2-12.15 is installed
  • OR libgio-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libglib-2_0-0-2.48.2-12.15 is installed
  • OR libglib-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgmodule-2_0-0-2.48.2-12.15 is installed
  • OR libgmodule-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgobject-2_0-0-2.48.2-12.15 is installed
  • OR libgobject-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgthread-2_0-0-2.48.2-12.15 is installed
  • OR libgthread-2_0-0-32bit-2.48.2-12.15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ghostscript-9.27-23.31 is installed
  • OR ghostscript-x11-9.27-23.31 is installed
  • BACK