|
|
>> Fedora Security Update Fixes OpenLDAP Information Disclosure Issue
|
Title : Fedora Security Update Fixes OpenLDAP Information Disclosure Issue VUPEN ID : VUPEN/ADV-2005-2693 CVE ID : CVE-2005-2069
Rated as : Low Risk 
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-12-02
|
Fedora has released updated packages to address a vulnerability identified in OpenLDAP. This flaw could be exploited by attackers to disclose sensitive information. For additional information, see : VUPEN/ADV-2005-0947
Affected Products
Fedora Core 3
Solution
Upgrade the affected packages :
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
3c052ebf0ea89f8043745ea1316c8fa7 SRPMS/openldap-2.2.29-1.FC3.src.rpm
e91939937549353f701c67d714aa9e34 x86_64/openldap-2.2.29-1.FC3.x86_64.rpm
87128b39dc854f3512ac7cf01a847af0 x86_64/openldap-devel-2.2.29-1.FC3.x86_64.rpm
ee4b182dba186434091f4ed70e2260f4 x86_64/openldap-servers-2.2.29-1.FC3.x86_64.rpm
75881a0ee92492b68af2985b0a928147 x86_64/openldap-servers-sql-2.2.29-1.FC3.x86_64.rpm
fffd0ade442bd4566709665e2a914fa7 x86_64/openldap-clients-2.2.29-1.FC3.x86_64.rpm
366b07cf11cd4f6cd968bce1699e708d x86_64/compat-openldap-2.2.29_2.1.30-1.FC3.x86_64.rpm
01217650770d476ae54e720b4683cc3a x86_64/debug/openldap-debuginfo-2.2.29-1.FC3.x86_64.rpm
e57eebad07b69b93556c1ba5b3ba7539 x86_64/openldap-2.2.29-1.FC3.i386.rpm
6a6e656bf3726ada3900adea1bc7bde4 x86_64/compat-openldap-2.2.29_2.1.30-1.FC3.i386.rpm
e57eebad07b69b93556c1ba5b3ba7539 i386/openldap-2.2.29-1.FC3.i386.rpm
172c14b7fc249e18dbbd285920451b25 i386/openldap-devel-2.2.29-1.FC3.i386.rpm
9719b4fd54ddc05ae2da61bb5e62729f i386/openldap-servers-2.2.29-1.FC3.i386.rpm
94a352bfc63ca101d46dd0bcec34200c i386/openldap-servers-sql-2.2.29-1.FC3.i386.rpm
e971c26a61481f3bd09807a467007adf i386/openldap-clients-2.2.29-1.FC3.i386.rpm
6a6e656bf3726ada3900adea1bc7bde4 i386/compat-openldap-2.2.29_2.1.30-1.FC3.i386.rpm
b0bf94f4c283995805ff37991131d073 i386/debug/openldap-debuginfo-2.2.29-1.FC3.i386.rpm
References
http://www.vupen.com/english/advisories/2005/2693 http://www.frsirt.com/english/reference/1757
ChangeLog
2005-12-02 : Initial release
Vulnerability Management
Subscribe to VUPEN VNS and receive real-time alerts when new advisories or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form. | |
|