Oval Definition:oval:org.opensuse.security:def:59600
Revision Date:2021-03-03Version:1
Title:Security update for openldap2 (Important)
Description:

This update for openldap2 fixes the following issues:

- bsc#1182408 CVE-2020-36230 - an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service. - bsc#1182411 CVE-2020-36229 - ldap_X509dn2bv crash in the X.509 DN parsing in ad_keystring, resulting in denial of service. - bsc#1182412 CVE-2020-36228 - integer underflow leading to crash in the Certificate List Exact Assertion processing, resulting in denial of service. - bsc#1182413 CVE-2020-36227 - infinite loop in slapd with the cancel_extop Cancel operation, resulting in denial of service. - bsc#1182416 CVE-2020-36225 - double free and slapd crash in the saslAuthzTo processing, resulting in denial of service. - bsc#1182417 CVE-2020-36224 - invalid pointer free and slapd crash in the saslAuthzTo processing, resulting in denial of service. - bsc#1182415 CVE-2020-36226 - memch->bv_len miscalculation and slapd crash in the saslAuthzTo processing, resulting in denial of service. - bsc#1182419 CVE-2020-36222 - assertion failure in slapd in the saslAuthzTo validation, resulting in denial of service. - bsc#1182420 CVE-2020-36221 - slapd crashes in the Certificate Exact Assertion processing, resulting in denial of service (schema_init.c serialNumberAndIssuerCheck). - bsc#1182418 CVE-2020-36223 - slapd crash in the Values Return Filter control handling, resulting in denial of service (double free and out-of-bounds read). - bsc#1182279 CVE-2021-27212 - an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet, resulting in a denial of service (daemon exit) via a short timestamp. This is related to schema_init.c and checkTime.
Family:unixClass:patch
Status:Reference(s):1010399
1010405
1010406
1010408
1010409
1010421
1010423
1010424
1010425
1010426
1012382
1025108
1043008
1046853
1046858
1047281
1047964
1047965
1049344
1074235
1082653
1085042
1085536
1086690
1087081
1089343
1090123
1090336
1090435
1090638
1090849
1092001
1092611
1094150
1094154
1094161
1094244
1094448
1095603
1095643
1096978
1096985
1097771
1097847
1099858
1100132
1100930
1101366
1101658
1101789
1102003
1102004
1102005
1102007
1102188
1102197
1102203
1102205
1102207
1102211
1102214
1102215
1102340
1102394
1102683
1102851
1103119
1103580
1103745
1103884
1105592
1106855
1106858
1111789
1112209
1113534
1113652
1113742
1115375
1120374
1123022
1130116
1130324
1137990
1141780
1141782
1141783
1141784
1141785
1141786
1141787
1141789
1149429
1152107
1154738
1172031
1172225
1173798
1174205
1174757
1175691
1176069
1178512
1182279
1182408
1182411
1182412
1182413
1182415
1182416
1182417
1182418
1182419
1182420
959933
983922
CVE-2013-2131
CVE-2015-0295
CVE-2015-1858
CVE-2015-1859
CVE-2015-1860
CVE-2016-2830
CVE-2016-5289
CVE-2016-5292
CVE-2016-9063
CVE-2016-9067
CVE-2016-9068
CVE-2016-9069
CVE-2016-9071
CVE-2016-9073
CVE-2016-9075
CVE-2016-9076
CVE-2016-9077
CVE-2017-10684
CVE-2017-10685
CVE-2017-11112
CVE-2017-11113
CVE-2017-17833
CVE-2017-18269
CVE-2017-18344
CVE-2017-7789
CVE-2018-0734
CVE-2018-11236
CVE-2018-11237
CVE-2018-12099
CVE-2018-14434
CVE-2018-14435
CVE-2018-14436
CVE-2018-14437
CVE-2018-14734
CVE-2018-16323
CVE-2018-16329
CVE-2018-3620
CVE-2018-3646
CVE-2018-3817
CVE-2018-5150
CVE-2018-5151
CVE-2018-5152
CVE-2018-5153
CVE-2018-5154
CVE-2018-5155
CVE-2018-5157
CVE-2018-5158
CVE-2018-5159
CVE-2018-5160
CVE-2018-5163
CVE-2018-5164
CVE-2018-5165
CVE-2018-5166
CVE-2018-5167
CVE-2018-5168
CVE-2018-5169
CVE-2018-5172
CVE-2018-5173
CVE-2018-5174
CVE-2018-5175
CVE-2018-5176
CVE-2018-5177
CVE-2018-5178
CVE-2018-5179
CVE-2018-5180
CVE-2018-5181
CVE-2018-5182
CVE-2018-5183
CVE-2018-5390
CVE-2018-5407
CVE-2019-11757
CVE-2019-11758
CVE-2019-11759
CVE-2019-11760
CVE-2019-11761
CVE-2019-11762
CVE-2019-11763
CVE-2019-11764
CVE-2019-15903
CVE-2019-16746
CVE-2019-20807
CVE-2019-2745
CVE-2019-2762
CVE-2019-2766
CVE-2019-2769
CVE-2019-2786
CVE-2019-2816
CVE-2019-2842
CVE-2019-3814
CVE-2019-7317
CVE-2019-7524
CVE-2019-9924
CVE-2020-14314
CVE-2020-14331
CVE-2020-14386
CVE-2020-16166
CVE-2020-28196
CVE-2020-36221
CVE-2020-36222
CVE-2020-36223
CVE-2020-36224
CVE-2020-36225
CVE-2020-36226
CVE-2020-36227
CVE-2020-36228
CVE-2020-36229
CVE-2020-36230
CVE-2021-27212
SUSE-SU-2017:2075-1
SUSE-SU-2018:2317-1
SUSE-SU-2018:2328-1
SUSE-SU-2018:2778-1
SUSE-SU-2018:2779-1
SUSE-SU-2019:0900-1
SUSE-SU-2019:2872-1
SUSE-SU-2020:1550-1
SUSE-SU-2020:2576-1
SUSE-SU-2020:3379-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • libsystemd0-234-lp150.19 is installed
  • OR libudev1-234-lp150.19 is installed
  • OR libudev1-32bit-234-lp150.19 is installed
  • OR systemd-234-lp150.19 is installed
  • OR systemd-32bit-234-lp150.19 is installed
  • OR systemd-bash-completion-234-lp150.19 is installed
  • OR systemd-sysvinit-234-lp150.19 is installed
  • OR udev-234-lp150.19 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • docker-18.09.6_ce-lp151.2.6 is installed
  • OR docker-bash-completion-18.09.6_ce-lp151.2.6 is installed
  • OR docker-test-18.09.6_ce-lp151.2.6 is installed
  • OR docker-zsh-completion-18.09.6_ce-lp151.2.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • dovecot22-2.2.31-19.14 is installed
  • OR dovecot22-backend-mysql-2.2.31-19.14 is installed
  • OR dovecot22-backend-pgsql-2.2.31-19.14 is installed
  • OR dovecot22-backend-sqlite-2.2.31-19.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • glibc-2.22-62.13 is installed
  • OR glibc-32bit-2.22-62.13 is installed
  • OR glibc-devel-2.22-62.13 is installed
  • OR glibc-devel-32bit-2.22-62.13 is installed
  • OR glibc-html-2.22-62.13 is installed
  • OR glibc-i18ndata-2.22-62.13 is installed
  • OR glibc-info-2.22-62.13 is installed
  • OR glibc-locale-2.22-62.13 is installed
  • OR glibc-locale-32bit-2.22-62.13 is installed
  • OR glibc-profile-2.22-62.13 is installed
  • OR glibc-profile-32bit-2.22-62.13 is installed
  • OR nscd-2.22-62.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libQt5Concurrent5-5.6.2-5 is installed
  • OR libQt5Core5-5.6.2-5 is installed
  • OR libQt5DBus5-5.6.2-5 is installed
  • OR libQt5Gui5-5.6.2-5 is installed
  • OR libQt5Network5-5.6.2-5 is installed
  • OR libQt5OpenGL5-5.6.2-5 is installed
  • OR libQt5PrintSupport5-5.6.2-5 is installed
  • OR libQt5Sql5-5.6.2-5 is installed
  • OR libQt5Sql5-mysql-5.6.2-5 is installed
  • OR libQt5Sql5-postgresql-5.6.2-5 is installed
  • OR libQt5Sql5-sqlite-5.6.2-5 is installed
  • OR libQt5Sql5-unixODBC-5.6.2-5 is installed
  • OR libQt5Test5-5.6.2-5 is installed
  • OR libQt5Widgets5-5.6.2-5 is installed
  • OR libQt5Xml5-5.6.2-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libQt5Concurrent5-5.6.2-6.25 is installed
  • OR libQt5Core5-5.6.2-6.25 is installed
  • OR libQt5DBus5-5.6.2-6.25 is installed
  • OR libQt5Gui5-5.6.2-6.25 is installed
  • OR libQt5Network5-5.6.2-6.25 is installed
  • OR libQt5OpenGL5-5.6.2-6.25 is installed
  • OR libQt5PrintSupport5-5.6.2-6.25 is installed
  • OR libQt5Sql5-5.6.2-6.25 is installed
  • OR libQt5Sql5-mysql-5.6.2-6.25 is installed
  • OR libQt5Sql5-postgresql-5.6.2-6.25 is installed
  • OR libQt5Sql5-sqlite-5.6.2-6.25 is installed
  • OR libQt5Sql5-unixODBC-5.6.2-6.25 is installed
  • OR libQt5Test5-5.6.2-6.25 is installed
  • OR libQt5Widgets5-5.6.2-6.25 is installed
  • OR libQt5Xml5-5.6.2-6.25 is installed
  • OR libqt5-qtbase-5.6.2-6.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libssh2-1-1.4.3-20.9 is installed
  • OR libssh2-1-32bit-1.4.3-20.9 is installed
  • OR libssh2_org-1.4.3-20.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libgcrypt-1.6.1-16.62 is installed
  • OR libgcrypt20-1.6.1-16.62 is installed
  • OR libgcrypt20-32bit-1.6.1-16.62 is installed
  • OR libgcrypt20-hmac-1.6.1-16.62 is installed
  • OR libgcrypt20-hmac-32bit-1.6.1-16.62 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • curl-7.60.0-2 is installed
  • OR libcurl4-7.60.0-2 is installed
  • OR libcurl4-32bit-7.60.0-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • libldap-2_4-2-2.4.41-18.83.1 is installed
  • OR libldap-2_4-2-32bit-2.4.41-18.83.1 is installed
  • OR openldap2-2.4.41-18.83.1 is installed
  • OR openldap2-back-meta-2.4.41-18.83.1 is installed
  • OR openldap2-client-2.4.41-18.83.1 is installed
  • OR openldap2-doc-2.4.41-18.83.1 is installed
  • OR openldap2-ppolicy-check-password-1.2-18.83.1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • MozillaFirefox-68.2.0-109.95 is installed
  • OR MozillaFirefox-translations-common-68.2.0-109.95 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • grafana-4.5.1-4.3 is installed
  • OR kafka-0.9.0.1-5.3 is installed
  • OR logstash-2.4.1-5.4 is installed
  • OR openstack-monasca-installer-20180622_15.06-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • mariadb-10.2.32-3.28 is installed
  • OR mariadb-galera-10.2.32-3.28 is installed
  • BACK