VYPR

rpm package

suse/openldap2&distro=SUSE Linux Enterprise Desktop 12 SP4

pkg:rpm/suse/openldap2&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP4

Vulnerabilities (3)

  • CVE-2019-13565Jul 26, 2019
    affected < 2.4.41-18.63.1fixed 2.4.41-18.63.1

    An issue was discovered in OpenLDAP 2.x before 2.4.48. When using SASL authentication and session encryption, and relying on the SASL security layers in slapd access controls, it is possible to obtain access that would otherwise be denied via a simple bind for any identity covere

  • CVE-2019-13057Jul 26, 2019
    affected < 2.4.41-18.63.1fixed 2.4.41-18.63.1

    An issue was discovered in the server in OpenLDAP before 2.4.48. When the server administrator delegates rootDN (database admin) privileges for certain databases but wants to maintain isolation (e.g., for multi-tenant deployments), slapd does not properly stop a rootDN from reque

  • CVE-2017-17740HigDec 18, 2017
    affected < 2.4.41-18.43.1fixed 2.4.41-18.43.1

    contrib/slapd-modules/nops/nops.c in OpenLDAP through 2.4.45, when both the nops module and the memberof overlay are enabled, attempts to free a buffer that was allocated on the stack, which allows remote attackers to cause a denial of service (slapd crash) via a member MODDN ope