[Pkg-openldap-devel] Bug#375494: slapd: buffer overflow on long host names [CVE-2006-2754]

Martin Pitt martin.pitt at ubuntu.com
Mon Jun 26 12:24:06 UTC 2006


Package: slapd
Version: 2.2.26-5
Severity: important
Tags: security patch

Hi!

Several distros recently fixed a buffer overflow in slurpd wrt. long
host names in the status file. This should not usually be exploitable,
but it is at least a nice bug fix for crashes. Please see

  http://patches.ubuntu.com/patches/openldap2.2.CVE-2006-2754.diff

for the patch.

Thank you,

Martin

-- 
Martin Pitt        http://www.piware.de
Ubuntu Developer   http://www.ubuntu.com
Debian Developer   http://www.debian.org

In a world without walls and fences, who needs Windows and Gates?
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 191 bytes
Desc: Digital signature
Url : http://lists.alioth.debian.org/pipermail/pkg-openldap-devel/attachments/20060626/1957572f/attachment.pgp


More information about the Pkg-openldap-devel mailing list