Oval Definition:oval:org.opensuse.security:def:81965
Revision Date:2020-07-06Version:1
Title:Security update for openldap2 (Important)
Description:

This update for openldap2 fixes the following issues:

- CVE-2020-8023: Fixed a potential local privilege escalation from ldap to root when OPENLDAP_CONFIG_BACKEND='ldap' was used (bsc#1172698). - Changed DB_CONFIG to root:ldap permissions (bsc#1172704). - Fixed an issue where slapd becomes unresponsive after many failed login/bind attempts(bsc#1170715).
Family:unixClass:patch
Status:Reference(s):1170715
1172698
1172704
CVE-2020-8023
SUSE-SU-2020:1859-1
Platform(s):SUSE Linux Enterprise Server 12 SP2-LTSS
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libldap-2_4-2-2.4.41-18.71.2 is installed
  • OR libldap-2_4-2-32bit-2.4.41-18.71.2 is installed
  • OR openldap2-2.4.41-18.71.2 is installed
  • OR openldap2-back-meta-2.4.41-18.71.2 is installed
  • OR openldap2-client-2.4.41-18.71.2 is installed
  • OR openldap2-doc-2.4.41-18.71.2 is installed
  • OR openldap2-ppolicy-check-password-1.2-18.71.2 is installed
  • BACK