Oval Definition:oval:org.opensuse.security:def:57175
Revision Date:2021-03-03Version:1
Title:Security update for openldap2 (Important)
Description:

This update for openldap2 fixes the following issues:

- bsc#1182408 CVE-2020-36230 - an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service. - bsc#1182411 CVE-2020-36229 - ldap_X509dn2bv crash in the X.509 DN parsing in ad_keystring, resulting in denial of service. - bsc#1182412 CVE-2020-36228 - integer underflow leading to crash in the Certificate List Exact Assertion processing, resulting in denial of service. - bsc#1182413 CVE-2020-36227 - infinite loop in slapd with the cancel_extop Cancel operation, resulting in denial of service. - bsc#1182416 CVE-2020-36225 - double free and slapd crash in the saslAuthzTo processing, resulting in denial of service. - bsc#1182417 CVE-2020-36224 - invalid pointer free and slapd crash in the saslAuthzTo processing, resulting in denial of service. - bsc#1182415 CVE-2020-36226 - memch->bv_len miscalculation and slapd crash in the saslAuthzTo processing, resulting in denial of service. - bsc#1182419 CVE-2020-36222 - assertion failure in slapd in the saslAuthzTo validation, resulting in denial of service. - bsc#1182420 CVE-2020-36221 - slapd crashes in the Certificate Exact Assertion processing, resulting in denial of service (schema_init.c serialNumberAndIssuerCheck). - bsc#1182418 CVE-2020-36223 - slapd crash in the Values Return Filter control handling, resulting in denial of service (double free and out-of-bounds read). - bsc#1182279 CVE-2021-27212 - an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet, resulting in a denial of service (daemon exit) via a short timestamp. This is related to schema_init.c and checkTime.
Family:unixClass:patch
Status:Reference(s):1010675
1013930
1014873
1017497
1020108
1076017
1077445
1082063
1082210
1083125
1083417
1083420
1083422
1083424
1083426
1083488
1085114
1085447
1085449
1089039
1090368
1090646
1090869
1093311
1103040
1104457
1108308
1110723
1115375
1133037
1141619
1141780
1141782
1141783
1141784
1141785
1141786
1141787
1141789
1154212
1158442
1162202
1162675
1168422
1182279
1182408
1182411
1182412
1182413
1182415
1182416
1182417
1182418
1182419
1182420
829077
854869
876652
963448
CVE-2011-1018
CVE-2013-2877
CVE-2014-0191
CVE-2016-1549
CVE-2016-2037
CVE-2016-9318
CVE-2016-9597
CVE-2017-13166
CVE-2017-13166
CVE-2018-0737
CVE-2018-1000004
CVE-2018-1068
CVE-2018-1087
CVE-2018-1417
CVE-2018-14680
CVE-2018-14681
CVE-2018-14682
CVE-2018-15378
CVE-2018-2783
CVE-2018-2790
CVE-2018-2794
CVE-2018-2795
CVE-2018-2796
CVE-2018-2797
CVE-2018-2798
CVE-2018-2799
CVE-2018-2800
CVE-2018-2814
CVE-2018-7170
CVE-2018-7182
CVE-2018-7183
CVE-2018-7184
CVE-2018-7185
CVE-2018-7566
CVE-2018-8781
CVE-2018-8897
CVE-2019-1010006
CVE-2019-11459
CVE-2019-17631
CVE-2019-18634
CVE-2019-2745
CVE-2019-2762
CVE-2019-2766
CVE-2019-2769
CVE-2019-2786
CVE-2019-2816
CVE-2019-2842
CVE-2019-2933
CVE-2019-2945
CVE-2019-2958
CVE-2019-2962
CVE-2019-2964
CVE-2019-2973
CVE-2019-2975
CVE-2019-2978
CVE-2019-2981
CVE-2019-2983
CVE-2019-2988
CVE-2019-2989
CVE-2019-2992
CVE-2019-2996
CVE-2019-2999
CVE-2019-7317
CVE-2020-36221
CVE-2020-36222
CVE-2020-36223
CVE-2020-36224
CVE-2020-36225
CVE-2020-36226
CVE-2020-36227
CVE-2020-36228
CVE-2020-36229
CVE-2020-36230
CVE-2020-3898
CVE-2021-27212
SUSE-SU-2017:0366-1
SUSE-SU-2017:1366-1
SUSE-SU-2018:1032-1
SUSE-SU-2018:1545-1
SUSE-SU-2018:1764-1
SUSE-SU-2018:1765-1
SUSE-SU-2018:2492-1
SUSE-SU-2018:3074-1
SUSE-SU-2018:3436-1
SUSE-SU-2019:2036-1
SUSE-SU-2019:2080-1
SUSE-SU-2020:0024-1
SUSE-SU-2020:0406-1
SUSE-SU-2020:1045-1
SUSE-SU-2021:0693-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • curl-7.59.0-lp150.1 is installed
  • OR libcurl4-7.59.0-lp150.1 is installed
  • OR libcurl4-32bit-7.59.0-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • bluez-5.48-lp151.8.3 is installed
  • OR bluez-auto-enable-devices-5.48-lp151.8.3 is installed
  • OR bluez-cups-5.48-lp151.8.3 is installed
  • OR bluez-devel-5.48-lp151.8.3 is installed
  • OR bluez-devel-32bit-5.48-lp151.8.3 is installed
  • OR bluez-test-5.48-lp151.8.3 is installed
  • OR libbluetooth3-5.48-lp151.8.3 is installed
  • OR libbluetooth3-32bit-5.48-lp151.8.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • libxml2-2.7.6-0.25 is installed
  • OR libxml2-32bit-2.7.6-0.25 is installed
  • OR libxml2-python-2.7.6-0.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND sudo-1.8.20p2-3.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libxml2-2.9.1-26.12 is installed
  • OR libxml2-2-2.9.1-26.12 is installed
  • OR libxml2-2-32bit-2.9.1-26.12 is installed
  • OR libxml2-doc-2.9.1-26.12 is installed
  • OR libxml2-tools-2.9.1-26.12 is installed
  • OR python-libxml2-2.9.1-26.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • libopenssl1_0_0-1.0.1i-54.17 is installed
  • OR libopenssl1_0_0-32bit-1.0.1i-54.17 is installed
  • OR libopenssl1_0_0-hmac-1.0.1i-54.17 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.1i-54.17 is installed
  • OR openssl-1.0.1i-54.17 is installed
  • OR openssl-doc-1.0.1i-54.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND logwatch-7.4.3-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • kernel-default-4.4.121-92.109 is installed
  • OR kernel-default-base-4.4.121-92.109 is installed
  • OR kernel-default-devel-4.4.121-92.109 is installed
  • OR kernel-devel-4.4.121-92.109 is installed
  • OR kernel-macros-4.4.121-92.109 is installed
  • OR kernel-source-4.4.121-92.109 is installed
  • OR kernel-syms-4.4.121-92.109 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_85-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_23-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_74-92_38-default-9-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_13-9-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • curl-7.37.0-36 is installed
  • OR libcurl4-7.37.0-36 is installed
  • OR libcurl4-32bit-7.37.0-36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libXvnc1-1.6.0-18.28 is installed
  • OR tigervnc-1.6.0-18.28 is installed
  • OR xorg-x11-Xvnc-1.6.0-18.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libldap-2_4-2-2.4.41-18.83.1 is installed
  • OR libldap-2_4-2-32bit-2.4.41-18.83.1 is installed
  • OR openldap2-2.4.41-18.83.1 is installed
  • OR openldap2-back-meta-2.4.41-18.83.1 is installed
  • OR openldap2-client-2.4.41-18.83.1 is installed
  • OR openldap2-doc-2.4.41-18.83.1 is installed
  • OR openldap2-ppolicy-check-password-1.2-18.83.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND unzip-6.00-33.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.222-27.35 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND clamav-0.100.2-33.18 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND squid-3.5.21-26.29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-4.15 is installed
  • OR crowbar-core-5.0+git.1565280360.01fed6905-3.26 is installed
  • OR crowbar-core-branding-upstream-5.0+git.1565280360.01fed6905-3.26 is installed
  • OR crowbar-ha-5.0+git.1562069707.e2de18c-3.20 is installed
  • OR crowbar-openstack-5.0+git.1565270683.ea6e63d87-4.28 is installed
  • OR crowbar-ui-1.2.0+git.1563181545.65360af5-3.9 is installed
  • OR documentation-suse-openstack-cloud-deployment-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20190805-1.20 is installed
  • OR galera-python-clustercheck-0.0+git.1562242499.36b8b64-4.6 is installed
  • OR grafana-monasca-ui-drilldown-1.8.1~dev39-3.9 is installed
  • OR openstack-cinder-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-api-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-backup-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-doc-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-scheduler-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-volume-11.2.3~dev7-3.18 is installed
  • OR openstack-glance-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-api-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-doc-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-registry-15.0.3~dev2-3.9 is installed
  • OR openstack-heat-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-cfn-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-cloudwatch-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-doc-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-engine-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-plugin-heat_docker-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-test-9.0.8~dev11-3.21 is installed
  • OR openstack-horizon-plugin-monasca-ui-1.8.1~dev39-3.9 is installed
  • OR openstack-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6 is installed
  • OR openstack-ironic-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-api-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-conductor-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-doc-9.1.8~dev7-3.21 is installed
  • OR openstack-keystone-12.0.4~dev2-5.22 is installed
  • OR openstack-keystone-doc-12.0.4~dev2-5.22 is installed
  • OR openstack-manila-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-api-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-data-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-doc-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-scheduler-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-share-5.1.1~dev2-3.18 is installed
  • OR openstack-monasca-agent-2.2.5~dev5-3.12 is installed
  • OR openstack-monasca-api-2.2.2~dev1-3.15 is installed
  • OR openstack-monasca-persister-1.7.1~dev10-3.9 is installed
  • OR openstack-monasca-persister-java-1.7.1~a0~dev2-3.3 is installed
  • OR openstack-murano-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-api-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-doc-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-engine-4.0.2~dev2-3.9 is installed
  • OR openstack-neutron-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-dhcp-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-doc-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-gbp-7.3.1~dev45-3.6 is installed
  • OR openstack-neutron-ha-tool-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-l3-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-lbaas-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-lbaas-agent-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-lbaas-doc-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-linuxbridge-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-macvtap-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-metadata-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-metering-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-openvswitch-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-server-11.0.9~dev42-3.21 is installed
  • OR openstack-nova-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-api-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-cells-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-compute-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-conductor-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-console-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-doc-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-placement-api-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-scheduler-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-octavia-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-amphora-agent-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-api-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-health-manager-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-housekeeping-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-worker-1.0.6~dev2-4.18 is installed
  • OR python-cinder-11.2.3~dev7-3.18 is installed
  • OR python-glance-15.0.3~dev2-3.9 is installed
  • OR python-heat-9.0.8~dev11-3.21 is installed
  • OR python-horizon-plugin-monasca-ui-1.8.1~dev39-3.9 is installed
  • OR python-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6 is installed
  • OR python-ironic-9.1.8~dev7-3.21 is installed
  • OR python-keystone-12.0.4~dev2-5.22 is installed
  • OR python-manila-5.1.1~dev2-3.18 is installed
  • OR python-monasca-agent-2.2.5~dev5-3.12 is installed
  • OR python-monasca-api-2.2.2~dev1-3.15 is installed
  • OR python-monasca-persister-1.7.1~dev10-3.9 is installed
  • OR python-murano-4.0.2~dev2-3.9 is installed
  • OR python-neutron-11.0.9~dev42-3.21 is installed
  • OR python-neutron-gbp-7.3.1~dev45-3.6 is installed
  • OR python-neutron-lbaas-11.0.4~dev6-3.12 is installed
  • OR python-nova-16.1.9~dev4-3.26 is installed
  • OR python-octavia-1.0.6~dev2-4.18 is installed
  • OR python-oslo.db-4.25.2-3.6 is installed
  • OR python-osprofiler-1.11.1-3.3 is installed
  • BACK