Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:4235

Опубликовано: 15 июл. 2024
Источник: rocky
Оценка: Important

Описание

Important: 389-ds security update

389 Directory Server is an LDAP version 3 (LDAPv3) compliant server. The base packages include the Lightweight Directory Access Protocol (LDAP) server and command-line utilities for server administration.

Security Fix(es):

  • 389-ds-base: potential denial of service via specially crafted kerberos AS-REQ request (CVE-2024-3657)

  • 389-ds-base: Malformed userPassword may cause crash at do_modify in slapd/modify.c (CVE-2024-2199)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
389-ds-basex86_647.module+el8.10.0+1832+2f5a9255389-ds-base-1.4.3.39-7.module+el8.10.0+1832+2f5a9255.x86_64.rpm
389-ds-base-develx86_647.module+el8.10.0+1832+2f5a9255389-ds-base-devel-1.4.3.39-7.module+el8.10.0+1832+2f5a9255.x86_64.rpm
389-ds-base-legacy-toolsx86_647.module+el8.10.0+1832+2f5a9255389-ds-base-legacy-tools-1.4.3.39-7.module+el8.10.0+1832+2f5a9255.x86_64.rpm
389-ds-base-libsx86_647.module+el8.10.0+1832+2f5a9255389-ds-base-libs-1.4.3.39-7.module+el8.10.0+1832+2f5a9255.x86_64.rpm
389-ds-base-snmpx86_647.module+el8.10.0+1832+2f5a9255389-ds-base-snmp-1.4.3.39-7.module+el8.10.0+1832+2f5a9255.x86_64.rpm
python3-lib389noarch7.module+el8.10.0+1832+2f5a9255python3-lib389-1.4.3.39-7.module+el8.10.0+1832+2f5a9255.noarch.rpm
python3-lib389noarch7.module+el8.10.0+1832+2f5a9255python3-lib389-1.4.3.39-7.module+el8.10.0+1832+2f5a9255.noarch.rpm

Показывать по

Связанные CVE

Связанные уязвимости

rocky
больше 1 года назад

Important: 389-ds-base security update

oracle-oval
больше 1 года назад

ELSA-2024-4235: 389-ds security update (IMPORTANT)

oracle-oval
больше 1 года назад

ELSA-2024-3837: 389-ds-base security update (IMPORTANT)

oracle-oval
больше 1 года назад

ELSA-2024-3591: 389-ds-base security update (IMPORTANT)

suse-cvrf
около 1 года назад

Security update for 389-ds