Oval Definition:oval:org.opensuse.security:def:59646
Revision Date:2020-12-01Version:1
Title:Security update for openldap2 (Important)
Description:

This update for openldap2 fixes the following issues:

- CVE-2020-8023: Fixed a potential local privilege escalation from ldap to root when OPENLDAP_CONFIG_BACKEND='ldap' was used (bsc#1172698). - Changed DB_CONFIG to root:ldap permissions (bsc#1172704). - Fixed an issue where slapd becomes unresponsive after many failed login/bind attempts(bsc#1170715).
Family:unixClass:patch
Status:Reference(s):1009994
1010756
1010757
1010766
1010774
1010782
1010968
1010975
1012382
1027519
1042286
1044189
1047958
1049219
1050707
1058565
1058622
1058624
1062604
1063026
1064232
1065364
1066223
1074562
1082519
1082863
1082979
1084427
1084536
1085042
1086039
1087209
1088087
1088810
1089066
1090535
1091815
1092631
1092903
1094244
1094466
1094555
1094562
1095344
1095753
1096547
1097104
1099597
1099810
1099811
1099813
1099844
1099845
1099846
1099849
1099863
1099864
1099922
1099993
1099999
1100000
1100001
1100152
1102495
1102517
1102715
1102840
1102870
1102875
1102877
1102879
1102882
1102896
1103156
1103269
1103445
1104319
1104495
1105012
1105292
1105296
1105322
1105348
1105396
1105536
1106016
1106095
1106369
1106434
1106509
1106511
1106512
1106594
1106934
1107689
1107735
1107924
1107966
1108096
1108170
1108239
1108240
1108399
1108803
1108823
1109333
1109336
1109337
1109441
1110297
1110337
1122292
1122299
1132728
1132729
1132732
1132734
1134718
1136085
1141780
1141782
1141783
1141785
1141787
1141789
1144903
1147021
1153108
1153158
1153161
1159723
1159729
1160039
1160968
1162972
1164825
1170601
1170715
1171863
1171864
1171866
1171928
1172698
1172704
1174157
1175259
CVE-2011-3177
CVE-2015-8803
CVE-2015-8804
CVE-2015-8805
CVE-2016-6489
CVE-2016-9262
CVE-2016-9388
CVE-2016-9389
CVE-2016-9390
CVE-2016-9391
CVE-2016-9392
CVE-2016-9393
CVE-2016-9394
CVE-2017-1000050
CVE-2017-12150
CVE-2017-12151
CVE-2017-12163
CVE-2017-5715
CVE-2017-5753
CVE-2017-5754
CVE-2018-10853
CVE-2018-10876
CVE-2018-10877
CVE-2018-10878
CVE-2018-10879
CVE-2018-10880
CVE-2018-10881
CVE-2018-10882
CVE-2018-10883
CVE-2018-10902
CVE-2018-10938
CVE-2018-10940
CVE-2018-11212
CVE-2018-12896
CVE-2018-13093
CVE-2018-13094
CVE-2018-13095
CVE-2018-14613
CVE-2018-14617
CVE-2018-14617
CVE-2018-14678
CVE-2018-15572
CVE-2018-15594
CVE-2018-16276
CVE-2018-16276
CVE-2018-16597
CVE-2018-16658
CVE-2018-17182
CVE-2018-17182
CVE-2018-3639
CVE-2018-6554
CVE-2018-6555
CVE-2018-7480
CVE-2018-7480
CVE-2018-7757
CVE-2018-7757
CVE-2018-9363
CVE-2019-0221
CVE-2019-10220
CVE-2019-10245
CVE-2019-11771
CVE-2019-11772
CVE-2019-11775
CVE-2019-12418
CVE-2019-17133
CVE-2019-17563
CVE-2019-17569
CVE-2019-17639
CVE-2019-2449
CVE-2019-2602
CVE-2019-2684
CVE-2019-2697
CVE-2019-2698
CVE-2019-2762
CVE-2019-2766
CVE-2019-2769
CVE-2019-2786
CVE-2019-2816
CVE-2019-4473
CVE-2019-7317
CVE-2020-10543
CVE-2020-10878
CVE-2020-12723
CVE-2020-14556
CVE-2020-14577
CVE-2020-14578
CVE-2020-14579
CVE-2020-14581
CVE-2020-14583
CVE-2020-14593
CVE-2020-14621
CVE-2020-2583
CVE-2020-2593
CVE-2020-2604
CVE-2020-2659
CVE-2020-8023
CVE-2020-9484
SUSE-SU-2017:2695-1
SUSE-SU-2018:0339-1
SUSE-SU-2018:3003-1
SUSE-SU-2018:3311-1
SUSE-SU-2019:2371-1
SUSE-SU-2020:0456-1
SUSE-SU-2020:1498-1
SUSE-SU-2020:1859-1
SUSE-SU-2020:2461-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • plasma5-desktop-5.12.5-lp150.2 is installed
  • OR plasma5-desktop-lang-5.12.5-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • proftpd-1.3.5e-lp151.3.3 is installed
  • OR proftpd-devel-1.3.5e-lp151.3.3 is installed
  • OR proftpd-doc-1.3.5e-lp151.3.3 is installed
  • OR proftpd-lang-1.3.5e-lp151.3.3 is installed
  • OR proftpd-ldap-1.3.5e-lp151.3.3 is installed
  • OR proftpd-mysql-1.3.5e-lp151.3.3 is installed
  • OR proftpd-pgsql-1.3.5e-lp151.3.3 is installed
  • OR proftpd-radius-1.3.5e-lp151.3.3 is installed
  • OR proftpd-sqlite-1.3.5e-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libldap-2_4-2-2.4.41-18.71 is installed
  • OR libldap-2_4-2-32bit-2.4.41-18.71 is installed
  • OR openldap2-2.4.41-18.71 is installed
  • OR openldap2-back-meta-2.4.41-18.71 is installed
  • OR openldap2-client-2.4.41-18.71 is installed
  • OR openldap2-doc-2.4.41-18.71 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • xen-4.7.5_04-43.33 is installed
  • OR xen-doc-html-4.7.5_04-43.33 is installed
  • OR xen-libs-4.7.5_04-43.33 is installed
  • OR xen-libs-32bit-4.7.5_04-43.33 is installed
  • OR xen-tools-4.7.5_04-43.33 is installed
  • OR xen-tools-domU-4.7.5_04-43.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libhogweed2-2.7.1-12 is installed
  • OR libhogweed2-32bit-2.7.1-12 is installed
  • OR libnettle4-2.7.1-12 is installed
  • OR libnettle4-32bit-2.7.1-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_175-94_79-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_23-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND mutt-1.10.1-55.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • bash-4.3-83.15 is installed
  • OR bash-doc-4.3-83.15 is installed
  • OR libreadline6-6.3-83.15 is installed
  • OR libreadline6-32bit-6.3-83.15 is installed
  • OR readline-doc-6.3-83.15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • tomcat-8.0.53-29.27 is installed
  • OR tomcat-admin-webapps-8.0.53-29.27 is installed
  • OR tomcat-docs-webapp-8.0.53-29.27 is installed
  • OR tomcat-el-3_0-api-8.0.53-29.27 is installed
  • OR tomcat-javadoc-8.0.53-29.27 is installed
  • OR tomcat-jsp-2_3-api-8.0.53-29.27 is installed
  • OR tomcat-lib-8.0.53-29.27 is installed
  • OR tomcat-servlet-3_1-api-8.0.53-29.27 is installed
  • OR tomcat-webapps-8.0.53-29.27 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.40-30.54 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.40-30.54 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.40-30.54 is installed
  • BACK