Home page logo
/

bugtraq logo Bugtraq mailing list archives

[USN-965-1] OpenLDAP vulnerabilities
From: Steve Beattie <sbeattie () ubuntu com>
Date: Mon, 9 Aug 2010 16:06:03 -0700

===========================================================
Ubuntu Security Notice USN-965-1            August 09, 2010
openldap, openldap2.2, openldap2.3 vulnerabilities
CVE-2010-0211, CVE-2010-0212
===========================================================

A security issue affects the following Ubuntu releases:

Ubuntu 6.06 LTS
Ubuntu 8.04 LTS
Ubuntu 9.04
Ubuntu 9.10
Ubuntu 10.04 LTS

This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.

The problem can be corrected by upgrading your system to the
following package versions:

Ubuntu 6.06 LTS:
  slapd                           2.2.26-5ubuntu2.10

Ubuntu 8.04 LTS:
  slapd                           2.4.9-0ubuntu0.8.04.4

Ubuntu 9.04:
  slapd                           2.4.15-1ubuntu3.1

Ubuntu 9.10:
  slapd                           2.4.18-0ubuntu1.1

Ubuntu 10.04 LTS:
  slapd                           2.4.21-0ubuntu5.2

In general, a standard system update will make all the necessary changes.

Details follow:

Using the Codenomicon LDAPv3 test suite, Ilkka Mattila and Tuomas
Salomäki discovered that the slap_modrdn2mods function in modrdn.c
in OpenLDAP does not check the return value from a call to the
smr_normalize function. A remote attacker could use specially crafted
modrdn requests to crash the slapd daemon or possibly execute arbitrary
code. (CVE-2010-0211)

Using the Codenomicon LDAPv3 test suite, Ilkka Mattila and Tuomas
Salomäki discovered that OpenLDAP does not properly handle empty
RDN strings. A remote attacker could use specially crafted modrdn
requests to crash the slapd daemon. (CVE-2010-0212)

In the default installation under Ubuntu 8.04 LTS and later, attackers
would be isolated by the OpenLDAP AppArmor profile for the slapd daemon.


Updated packages for Ubuntu 6.06 LTS:

  Source archives:

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/openldap2.2_2.2.26-5ubuntu2.10.diff.gz
      Size/MD5:   517754 c8f27c0b3f97fc0fe6681ca49f889853
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/openldap2.2_2.2.26-5ubuntu2.10.dsc
      Size/MD5:     1671 d667c44fbed4302c7e791de823c92101
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/openldap2.2_2.2.26.orig.tar.gz
      Size/MD5:  2626629 afc8700b5738da863b30208e1d3e9de8

  amd64 architecture (Athlon64, Opteron, EM64T Xeon):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/ldap-utils_2.2.26-5ubuntu2.10_amd64.deb
      Size/MD5:   131024 8c0891ec76cd3f95b242a7042bfd091c
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/libldap-2.2-7_2.2.26-5ubuntu2.10_amd64.deb
      Size/MD5:   166622 fb170a93d5f97e19c97cf5960778d406
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/slapd_2.2.26-5ubuntu2.10_amd64.deb
      Size/MD5:   962148 a486923e28e03c42878c3708b355febc

  i386 architecture (x86 compatible Intel/AMD):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/ldap-utils_2.2.26-5ubuntu2.10_i386.deb
      Size/MD5:   118864 305df718b6b2009f5eb9e7cbd517a3a9
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/libldap-2.2-7_2.2.26-5ubuntu2.10_i386.deb
      Size/MD5:   146624 1c96d1f77af35fd6f09461ad6f202b5a
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/slapd_2.2.26-5ubuntu2.10_i386.deb
      Size/MD5:   873620 4c773a4c3f56a94118ad1463f12cfd1f

  powerpc architecture (Apple Macintosh G3/G4/G5):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/ldap-utils_2.2.26-5ubuntu2.10_powerpc.deb
      Size/MD5:   133184 b83c0764c9d6e9411a7d1fbeb61a8197
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/libldap-2.2-7_2.2.26-5ubuntu2.10_powerpc.deb
      Size/MD5:   157668 8980fa65f994c60f13c913f1bd5dc608
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/slapd_2.2.26-5ubuntu2.10_powerpc.deb
      Size/MD5:   960432 d1077d920a75a62fbc95d615b6704471

  sparc architecture (Sun SPARC/UltraSPARC):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/ldap-utils_2.2.26-5ubuntu2.10_sparc.deb
      Size/MD5:   121062 302b962696d3eefefb94e1173b1ca661
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/libldap-2.2-7_2.2.26-5ubuntu2.10_sparc.deb
      Size/MD5:   148724 dd3eae7b1cc9cba7b26006e18361d16b
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.2/slapd_2.2.26-5ubuntu2.10_sparc.deb
      Size/MD5:   904184 1510f4aa7d28690bdd6e555123f78f36

Updated packages for Ubuntu 8.04 LTS:

  Source archives:

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/openldap2.3_2.4.9-0ubuntu0.8.04.4.diff.gz
      Size/MD5:   148114 3c4b6c99fb3f094f1f1514daeb3f7120
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/openldap2.3_2.4.9-0ubuntu0.8.04.4.dsc
      Size/MD5:     2158 05d2052ae3e6ea8e1b847d0e5fe9e18c
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/openldap2.3_2.4.9.orig.tar.gz
      Size/MD5:  3694611 3c0b5ae3d45f5675e67aaf81ce7decc9

  amd64 architecture (Athlon64, Opteron, EM64T Xeon):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/ldap-utils_2.4.9-0ubuntu0.8.04.4_amd64.deb
      Size/MD5:   267256 d7ac9461821f59535d9d93a1c16e6a02
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/libldap-2.4-2-dbg_2.4.9-0ubuntu0.8.04.4_amd64.deb
      Size/MD5:   292594 2273ce7d9b827a5df9fca384af6b71a7
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/libldap-2.4-2_2.4.9-0ubuntu0.8.04.4_amd64.deb
      Size/MD5:   198322 9e97d87777cec66050703d6dc1d6ff3b
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/libldap2-dev_2.4.9-0ubuntu0.8.04.4_amd64.deb
      Size/MD5:   868786 0404a165b087f461ddfbf518046fb082
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/slapd-dbg_2.4.9-0ubuntu0.8.04.4_amd64.deb
      Size/MD5:  3615350 cebb2537f01f4ba1dc5be6472ecbbe10
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/slapd_2.4.9-0ubuntu0.8.04.4_amd64.deb
      Size/MD5:  1448318 a8bcca6cbb08437b73b0ee73858a2109

  i386 architecture (x86 compatible Intel/AMD):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/ldap-utils_2.4.9-0ubuntu0.8.04.4_i386.deb
      Size/MD5:   245742 28c7fba5ccd1cede9cd9f6b78594ec0d
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/libldap-2.4-2-dbg_2.4.9-0ubuntu0.8.04.4_i386.deb
      Size/MD5:   283238 2353c500607c91ebb7a6aebd9731be26
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/libldap-2.4-2_2.4.9-0ubuntu0.8.04.4_i386.deb
      Size/MD5:   182516 41038c2d9497505c34e87fcddd488ea3
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/libldap2-dev_2.4.9-0ubuntu0.8.04.4_i386.deb
      Size/MD5:   778138 9c2ad87598efc696274047280818a414
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/slapd-dbg_2.4.9-0ubuntu0.8.04.4_i386.deb
      Size/MD5:  3533792 ab5f20269e7398914a07089a3748ae98
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap2.3/slapd_2.4.9-0ubuntu0.8.04.4_i386.deb
      Size/MD5:  1354934 c93b7b80e0e247e76aae0ca0ff88c631

  lpia architecture (Low Power Intel Architecture):

    http://ports.ubuntu.com/pool/main/o/openldap2.3/ldap-utils_2.4.9-0ubuntu0.8.04.4_lpia.deb
      Size/MD5:   246920 fbb4afbd55883de8efc4fe92daf69376
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap-2.4-2-dbg_2.4.9-0ubuntu0.8.04.4_lpia.deb
      Size/MD5:   285738 f4723f1d9ec292911242a7076b84fb11
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap-2.4-2_2.4.9-0ubuntu0.8.04.4_lpia.deb
      Size/MD5:   178290 5ae25048b50bced1098c0da93537030f
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap2-dev_2.4.9-0ubuntu0.8.04.4_lpia.deb
      Size/MD5:   779458 81a3ee60a15832a6952a9dd5aafe8731
    http://ports.ubuntu.com/pool/main/o/openldap2.3/slapd-dbg_2.4.9-0ubuntu0.8.04.4_lpia.deb
      Size/MD5:  3565778 dba8331d0efca2325eff1ee9918dccf1
    http://ports.ubuntu.com/pool/main/o/openldap2.3/slapd_2.4.9-0ubuntu0.8.04.4_lpia.deb
      Size/MD5:  1348880 4729b3642f5b314d930f7e6800fa9f79

  powerpc architecture (Apple Macintosh G3/G4/G5):

    http://ports.ubuntu.com/pool/main/o/openldap2.3/ldap-utils_2.4.9-0ubuntu0.8.04.4_powerpc.deb
      Size/MD5:   286872 aff601964d886ea1a78de4b9d5ba08cd
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap-2.4-2-dbg_2.4.9-0ubuntu0.8.04.4_powerpc.deb
      Size/MD5:   288490 c0597d792b73e1e60e1ba793115b31ad
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap-2.4-2_2.4.9-0ubuntu0.8.04.4_powerpc.deb
      Size/MD5:   193148 787b1cd124bd63a9ea32eafbf6592733
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap2-dev_2.4.9-0ubuntu0.8.04.4_powerpc.deb
      Size/MD5:   898042 0454fa9a105e98df5ee7e4c3b5592045
    http://ports.ubuntu.com/pool/main/o/openldap2.3/slapd-dbg_2.4.9-0ubuntu0.8.04.4_powerpc.deb
      Size/MD5:  3670956 aa05a84929cb426443227838691ba0f3
    http://ports.ubuntu.com/pool/main/o/openldap2.3/slapd_2.4.9-0ubuntu0.8.04.4_powerpc.deb
      Size/MD5:  1494712 a3b2d8a04e94fb8a14c5df7a85170bf1

  sparc architecture (Sun SPARC/UltraSPARC):

    http://ports.ubuntu.com/pool/main/o/openldap2.3/ldap-utils_2.4.9-0ubuntu0.8.04.4_sparc.deb
      Size/MD5:   248828 4899b7f9612edab884a4afffa46a8eb4
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap-2.4-2-dbg_2.4.9-0ubuntu0.8.04.4_sparc.deb
      Size/MD5:   259766 28bf51eff68f3228ad303d18fa11b248
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap-2.4-2_2.4.9-0ubuntu0.8.04.4_sparc.deb
      Size/MD5:   179084 369fa819ff9df6fb7ee050a83c5a1e7d
    http://ports.ubuntu.com/pool/main/o/openldap2.3/libldap2-dev_2.4.9-0ubuntu0.8.04.4_sparc.deb
      Size/MD5:   767880 f95e4f426c662d42b08464002247d8e2
    http://ports.ubuntu.com/pool/main/o/openldap2.3/slapd-dbg_2.4.9-0ubuntu0.8.04.4_sparc.deb
      Size/MD5:  3485710 9df63135bbc870d47444ed24a89950f4
    http://ports.ubuntu.com/pool/main/o/openldap2.3/slapd_2.4.9-0ubuntu0.8.04.4_sparc.deb
      Size/MD5:  1349886 ee3b6d818366d70e36901c9a5070af96

Updated packages for Ubuntu 9.04:

  Source archives:

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.15-1ubuntu3.1.diff.gz
      Size/MD5:   154255 d445dd331a3618538a5b62b9162fe8c1
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.15-1ubuntu3.1.dsc
      Size/MD5:     2580 8e2ce6601731777b20e90b4844f5763f
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.15.orig.tar.gz
      Size/MD5:  4339060 7b3ce3de2f252a1e88cd55c68551b73d

  amd64 architecture (Athlon64, Opteron, EM64T Xeon):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/ldap-utils_2.4.15-1ubuntu3.1_amd64.deb
      Size/MD5:   336418 506557a294acf39c3b91a3f6173e7d92
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.15-1ubuntu3.1_amd64.deb
      Size/MD5:   330866 38ac0959ca88ea592dc20e8d9c6cfe20
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2_2.4.15-1ubuntu3.1_amd64.deb
      Size/MD5:   208006 48bdde083ad2447d0cc4e32be16b0d1f
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap2-dev_2.4.15-1ubuntu3.1_amd64.deb
      Size/MD5:   949506 045a49aed09dbd9ab4dc40ba1a9d0026
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd-dbg_2.4.15-1ubuntu3.1_amd64.deb
      Size/MD5:  4271858 3ae0494269209e510cd06c7e010bcf08
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd_2.4.15-1ubuntu3.1_amd64.deb
      Size/MD5:  1612552 b769b6ab22c19800f7f95a9f1519b949

  i386 architecture (x86 compatible Intel/AMD):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/ldap-utils_2.4.15-1ubuntu3.1_i386.deb
      Size/MD5:   310632 39432cf90e15bca4c31cbc0f83023bb0
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.15-1ubuntu3.1_i386.deb
      Size/MD5:   317284 5951bc4d418b35a3b122eddce508fcfb
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2_2.4.15-1ubuntu3.1_i386.deb
      Size/MD5:   191734 9a18be566318a93dece84891821197ae
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap2-dev_2.4.15-1ubuntu3.1_i386.deb
      Size/MD5:   858828 86450b2de8102cd84b77c3e5b02dcbb1
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd-dbg_2.4.15-1ubuntu3.1_i386.deb
      Size/MD5:  4152084 d23287d87cbc57ef2d7b646931c6a69c
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd_2.4.15-1ubuntu3.1_i386.deb
      Size/MD5:  1519236 7c646d1ce3f4a9cb216b978c39b31775

  lpia architecture (Low Power Intel Architecture):

    http://ports.ubuntu.com/pool/main/o/openldap/ldap-utils_2.4.15-1ubuntu3.1_lpia.deb
      Size/MD5:   308440 66b6561dbb252abb7128390b9e14607b
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.15-1ubuntu3.1_lpia.deb
      Size/MD5:   321420 b30e46af05bc97b4001cfc6036c41d57
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2_2.4.15-1ubuntu3.1_lpia.deb
      Size/MD5:   186842 a5cc9bdb494891236f0eec75c38cce1e
    http://ports.ubuntu.com/pool/main/o/openldap/libldap2-dev_2.4.15-1ubuntu3.1_lpia.deb
      Size/MD5:   853380 25b15acaefe3814326329c100555f772
    http://ports.ubuntu.com/pool/main/o/openldap/slapd-dbg_2.4.15-1ubuntu3.1_lpia.deb
      Size/MD5:  4185976 6c0a7ee09c868699ea385f8a5036e065
    http://ports.ubuntu.com/pool/main/o/openldap/slapd_2.4.15-1ubuntu3.1_lpia.deb
      Size/MD5:  1502562 c8b96cc55c7991ffc43073b90a8ecf49

  powerpc architecture (Apple Macintosh G3/G4/G5):

    http://ports.ubuntu.com/pool/main/o/openldap/ldap-utils_2.4.15-1ubuntu3.1_powerpc.deb
      Size/MD5:   363386 df55ba8bbc93f1a7cd623a372f1cbed7
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.15-1ubuntu3.1_powerpc.deb
      Size/MD5:   325442 b4977c1711b3fd349ddd008843921987
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2_2.4.15-1ubuntu3.1_powerpc.deb
      Size/MD5:   201138 4935848d459114ea097aa34968d083a7
    http://ports.ubuntu.com/pool/main/o/openldap/libldap2-dev_2.4.15-1ubuntu3.1_powerpc.deb
      Size/MD5:   959716 e506a4f5f1fbdcba7037c0637266d845
    http://ports.ubuntu.com/pool/main/o/openldap/slapd-dbg_2.4.15-1ubuntu3.1_powerpc.deb
      Size/MD5:  4323450 b10154f885f777a5ee4b45b79b6e40d2
    http://ports.ubuntu.com/pool/main/o/openldap/slapd_2.4.15-1ubuntu3.1_powerpc.deb
      Size/MD5:  1662306 d3859a11a5ffad69cbffafda64ccba87

  sparc architecture (Sun SPARC/UltraSPARC):

    http://ports.ubuntu.com/pool/main/o/openldap/ldap-utils_2.4.15-1ubuntu3.1_sparc.deb
      Size/MD5:   320162 fe2d4cdd8944e1d53c2ad6c317c9d968
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.15-1ubuntu3.1_sparc.deb
      Size/MD5:   290808 37c630724f7482343290b7559e93e793
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2_2.4.15-1ubuntu3.1_sparc.deb
      Size/MD5:   185762 3a54f72e3f330e3780ef59722717724f
    http://ports.ubuntu.com/pool/main/o/openldap/libldap2-dev_2.4.15-1ubuntu3.1_sparc.deb
      Size/MD5:   844580 76af787342538fc6f493e1b6bafaaee8
    http://ports.ubuntu.com/pool/main/o/openldap/slapd-dbg_2.4.15-1ubuntu3.1_sparc.deb
      Size/MD5:  4095542 67c318a71385883a8562c04e3a59165d
    http://ports.ubuntu.com/pool/main/o/openldap/slapd_2.4.15-1ubuntu3.1_sparc.deb
      Size/MD5:  1497332 711355a2367bfb6060c438724b9337d6

Updated packages for Ubuntu 9.10:

  Source archives:

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.18-0ubuntu1.1.diff.gz
      Size/MD5:   148923 a3497f1f2fbca7df47ca8e58a49d10b0
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.18-0ubuntu1.1.dsc
      Size/MD5:     2591 9a1e0a051a099878f29fab06a8790a89
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.18.orig.tar.gz
      Size/MD5:  4770922 cd856e52c6ddfbb82bba06a5902dae30

  amd64 architecture (Athlon64, Opteron, EM64T Xeon):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/ldap-utils_2.4.18-0ubuntu1.1_amd64.deb
      Size/MD5:   346604 45eec1420df095ccc8f0ef5b7625a8f7
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.18-0ubuntu1.1_amd64.deb
      Size/MD5:   326740 abcbee5da576fc5e407360a43d35a65e
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2_2.4.18-0ubuntu1.1_amd64.deb
      Size/MD5:   209816 011bc5e625f7015917df7bcd361b6594
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap2-dev_2.4.18-0ubuntu1.1_amd64.deb
      Size/MD5:   949660 2b8dfb4cc2ab9614a71e635d72ae8eb5
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd-dbg_2.4.18-0ubuntu1.1_amd64.deb
      Size/MD5:  4331948 ae0215b6d0926aa4d898eda5e2c84b23
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd_2.4.18-0ubuntu1.1_amd64.deb
      Size/MD5:  1628040 6eb7b07c518514035de87fcf5e8edbd8

  i386 architecture (x86 compatible Intel/AMD):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/ldap-utils_2.4.18-0ubuntu1.1_i386.deb
      Size/MD5:   321004 db03fab986f8119df52d0fd8f28051d0
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.18-0ubuntu1.1_i386.deb
      Size/MD5:   326180 becfe6b8cbb5539aa21c60a05138561a
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2_2.4.18-0ubuntu1.1_i386.deb
      Size/MD5:   195706 939d3ea71269ac0a4283599f434934e0
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap2-dev_2.4.18-0ubuntu1.1_i386.deb
      Size/MD5:   880578 bd5a6c8118fa4fb38b65675532ad626d
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd-dbg_2.4.18-0ubuntu1.1_i386.deb
      Size/MD5:  4270580 2c423e5ef41cf366215725ac0454975c
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd_2.4.18-0ubuntu1.1_i386.deb
      Size/MD5:  1548938 455aa7303e4a29e58072b6da7637d5c6

  lpia architecture (Low Power Intel Architecture):

    http://ports.ubuntu.com/pool/main/o/openldap/ldap-utils_2.4.18-0ubuntu1.1_lpia.deb
      Size/MD5:   319684 cebbf09f331cd2609a84af0c3aca069f
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.18-0ubuntu1.1_lpia.deb
      Size/MD5:   329744 9e997d8524088eef0adf2ba8cca4ae5b
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2_2.4.18-0ubuntu1.1_lpia.deb
      Size/MD5:   191352 f90bdd94acbca3146e427fa54bf7bed3
    http://ports.ubuntu.com/pool/main/o/openldap/libldap2-dev_2.4.18-0ubuntu1.1_lpia.deb
      Size/MD5:   875880 c90176c0e74c6e24e98a4c948d26406b
    http://ports.ubuntu.com/pool/main/o/openldap/slapd-dbg_2.4.18-0ubuntu1.1_lpia.deb
      Size/MD5:  4302702 be690ddcf390290bf3cf28d5fcc7af2c
    http://ports.ubuntu.com/pool/main/o/openldap/slapd_2.4.18-0ubuntu1.1_lpia.deb
      Size/MD5:  1537496 6dd198c2f91e8216cdc6726b90895883

  powerpc architecture (Apple Macintosh G3/G4/G5):

    http://ports.ubuntu.com/pool/main/o/openldap/ldap-utils_2.4.18-0ubuntu1.1_powerpc.deb
      Size/MD5:   354408 dcdb42f3defbc67aeee9cffc164dee1f
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.18-0ubuntu1.1_powerpc.deb
      Size/MD5:   333884 cbcdb3cd560088c5ba85fbd4b4759223
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2_2.4.18-0ubuntu1.1_powerpc.deb
      Size/MD5:   205144 31513d4c0d83b88aa96639eaf6a0402e
    http://ports.ubuntu.com/pool/main/o/openldap/libldap2-dev_2.4.18-0ubuntu1.1_powerpc.deb
      Size/MD5:   982882 04c72145eb260def2d0a05a8f9682ce4
    http://ports.ubuntu.com/pool/main/o/openldap/slapd-dbg_2.4.18-0ubuntu1.1_powerpc.deb
      Size/MD5:  4429422 461b4e5e2bfc698d2619be07ea820092
    http://ports.ubuntu.com/pool/main/o/openldap/slapd_2.4.18-0ubuntu1.1_powerpc.deb
      Size/MD5:  1607866 e47815d429d99bef33eb59a97b3cdf5f

  sparc architecture (Sun SPARC/UltraSPARC):

    http://ports.ubuntu.com/pool/main/o/openldap/ldap-utils_2.4.18-0ubuntu1.1_sparc.deb
      Size/MD5:   330016 8e7bc855927ea79f1cdcf9544dcbe1b4
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.18-0ubuntu1.1_sparc.deb
      Size/MD5:   294836 5f675566a1b437d34c929421cffc8055
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2_2.4.18-0ubuntu1.1_sparc.deb
      Size/MD5:   188994 65a2aa3ddd110fab37cd976f8b4a117e
    http://ports.ubuntu.com/pool/main/o/openldap/libldap2-dev_2.4.18-0ubuntu1.1_sparc.deb
      Size/MD5:   860128 742067f8954ad83b276c50dfe1b03097
    http://ports.ubuntu.com/pool/main/o/openldap/slapd-dbg_2.4.18-0ubuntu1.1_sparc.deb
      Size/MD5:  4212214 0f9f88c6a628e620bcf38762f249f1cd
    http://ports.ubuntu.com/pool/main/o/openldap/slapd_2.4.18-0ubuntu1.1_sparc.deb
      Size/MD5:  1515400 48ae94701bc0fb7d737b9ee50e4df8a4

Updated packages for Ubuntu 10.04:

  Source archives:

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.21-0ubuntu5.2.diff.gz
      Size/MD5:   152344 035da3250be5687c5f21c8869a7ad9e3
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.21-0ubuntu5.2.dsc
      Size/MD5:     2604 3949eaa661a5ba73feab675ebc248942
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/openldap_2.4.21.orig.tar.gz
      Size/MD5:  4777066 e994d866cef44ad975815f3687a5f608

  amd64 architecture (Athlon64, Opteron, EM64T Xeon):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/ldap-utils_2.4.21-0ubuntu5.2_amd64.deb
      Size/MD5:   348444 435af3984d388aae5a699415ecf3b512
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.21-0ubuntu5.2_amd64.deb
      Size/MD5:   335440 ea4b72f1f3a116a37cc22b62d4b29ac4
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2_2.4.21-0ubuntu5.2_amd64.deb
      Size/MD5:   214896 ce0e6b40535a3a7887d99e913fdb725d
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap2-dev_2.4.21-0ubuntu5.2_amd64.deb
      Size/MD5:   973630 c8c7616f828a86f5b46513d1978408e7
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd-dbg_2.4.21-0ubuntu5.2_amd64.deb
      Size/MD5:  4347636 42c448ce1b12f7b387d8aa1179c9a774
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd_2.4.21-0ubuntu5.2_amd64.deb
      Size/MD5:  1634016 dde2b6049d7b506ba23886574b480a71

  i386 architecture (x86 compatible Intel/AMD):

    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/ldap-utils_2.4.21-0ubuntu5.2_i386.deb
      Size/MD5:   322940 9b4dc7f92a85eed880a6aa934aced40b
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.21-0ubuntu5.2_i386.deb
      Size/MD5:   335484 80436c488fbe5363f53ec8fe6a11050b
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap-2.4-2_2.4.21-0ubuntu5.2_i386.deb
      Size/MD5:   201640 a6dc6af4d8232510ee92e0c4e46a8eab
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/libldap2-dev_2.4.21-0ubuntu5.2_i386.deb
      Size/MD5:   901714 0bcba5fe1df7917aa52aa0f9f2fdcc70
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd-dbg_2.4.21-0ubuntu5.2_i386.deb
      Size/MD5:  4288146 234f378a3e732da27a6a876c727b82a2
    http://security.ubuntu.com/ubuntu/pool/main/o/openldap/slapd_2.4.21-0ubuntu5.2_i386.deb
      Size/MD5:  1553438 5e65bb2a5a59b2f91956c77935d508e4

  powerpc architecture (Apple Macintosh G3/G4/G5):

    http://ports.ubuntu.com/pool/main/o/openldap/ldap-utils_2.4.21-0ubuntu5.2_powerpc.deb
      Size/MD5:   355656 9281e28fb6e70ef60b9dccedc9f4d7b4
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.21-0ubuntu5.2_powerpc.deb
      Size/MD5:   343290 53178549d0351c815fe9da9251f5dbf4
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2_2.4.21-0ubuntu5.2_powerpc.deb
      Size/MD5:   210700 cb5983c6792ecb361d73cc416ede03dd
    http://ports.ubuntu.com/pool/main/o/openldap/libldap2-dev_2.4.21-0ubuntu5.2_powerpc.deb
      Size/MD5:  1006202 af9f2f3b906eb9636d939272e98a26a4
    http://ports.ubuntu.com/pool/main/o/openldap/slapd-dbg_2.4.21-0ubuntu5.2_powerpc.deb
      Size/MD5:  4447448 a4d9d890b64e0695faf08feb83054695
    http://ports.ubuntu.com/pool/main/o/openldap/slapd_2.4.21-0ubuntu5.2_powerpc.deb
      Size/MD5:  1613318 3f4d9756b4503fe944e0a214ada6e615

  sparc architecture (Sun SPARC/UltraSPARC):

    http://ports.ubuntu.com/pool/main/o/openldap/ldap-utils_2.4.21-0ubuntu5.2_sparc.deb
      Size/MD5:   338702 0045bb1d28e4507acf89af141126f4b4
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2-dbg_2.4.21-0ubuntu5.2_sparc.deb
      Size/MD5:   305854 59c30140a8f3ad95758d70359382a9eb
    http://ports.ubuntu.com/pool/main/o/openldap/libldap-2.4-2_2.4.21-0ubuntu5.2_sparc.deb
      Size/MD5:   197748 80ab33de9c5a915d72b7ba568ac55277
    http://ports.ubuntu.com/pool/main/o/openldap/libldap2-dev_2.4.21-0ubuntu5.2_sparc.deb
      Size/MD5:   892196 707d9ace83bdb3352b3c0dd525673c32
    http://ports.ubuntu.com/pool/main/o/openldap/slapd-dbg_2.4.21-0ubuntu5.2_sparc.deb
      Size/MD5:  4245210 246f48a63d06eb32eafc75bb389a208d
    http://ports.ubuntu.com/pool/main/o/openldap/slapd_2.4.21-0ubuntu5.2_sparc.deb
      Size/MD5:  1565268 853904e2330b4d0ba64e715d8e3d685b


Attachment: signature.asc
Description: Digital signature


  By Date           By Thread  

Current thread:
  • [USN-965-1] OpenLDAP vulnerabilities Steve Beattie (Aug 10)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]