Oval Definition:oval:org.opensuse.security:def:65837
Revision Date:2020-12-01Version:1
Title:Security update for openldap2 (Important)
Description:

This update for openldap2 fixes the following issues:

- CVE-2020-8023: Fixed a potential local privilege escalation from ldap to root when OPENLDAP_CONFIG_BACKEND='ldap' was used (bsc#1172698). - Changed DB_CONFIG to root:ldap permissions (bsc#1172704).
Family:unixClass:patch
Status:Reference(s):1172698
1172704
1173100
1173659
1173661
1173663
1173869
1173934
1173942
1173963
1174186
1174247
CVE-2019-0155
CVE-2019-14895
CVE-2019-14901
CVE-2019-15117
CVE-2019-16746
CVE-2019-19447
CVE-2019-9458
CVE-2020-11668
CVE-2020-14331
CVE-2020-15780
CVE-2020-8023
SUSE-SU-2020:1856-1
SUSE-SU-2020:2526-1
Platform(s):SUSE Linux Enterprise Module for Legacy Software 15 SP1
SUSE Linux Enterprise Module for Live Patching 15 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 SP1 is installed
  • AND Package Information
  • openldap2-2.4.46-9.31 is installed
  • OR openldap2-back-meta-2.4.46-9.31 is installed
  • OR openldap2-back-perl-2.4.46-9.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-197_18-default-8-2 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_5-8-2 is installed
  • BACK