Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Red Hat Local Security Checks >> RHSA-2002-312: openldap


Vulnerability Assessment Details

RHSA-2002-312: openldap

Vulnerability Assessment Summary
Check for the version of the openldap packages

Detailed Explanation for this Vulnerability Assessment


Updated OpenLDAP packages are available which fix a number of local and
remote buffer overflows in libldap as well as the slapd and slurpd daemons.
Additionally, potential issues stemming from using user-specified LDAP
configuration files have been addressed.

[Updated 06 Feb 2003]
Added fixed packages for Red Hat Linux Advanced Workstation 2.1

[Updated 13 Aug 2003]
Added openldap12 packages for Red Hat Linux Advanced Server 2.1
and Advanced Workstation 2.1 that were originally left out of this errata.

OpenLDAP is a suite of LDAP (Lightweight Directory Access Protocol)
applications and development tools. LDAP is a set of protocols for
accessing directory services. In an audit of OpenLDAP by SuSE, a number of
potential security issues were found.

The following is a list of these issues:

When reading configuration files, libldap reads the current user's .ldaprc
file even in applications being run with elevated rights.

Slurpd would overflow an internal buffer if the command-line argument used
with the -t or -r flags is too long, or if the name of a file for which it
attempted to create an advisory lock is too long.

When parsing filters, the getfilter family of functions from libldap can
overflow an internal buffer by supplying a carefully crafted
ldapfilter.conf file.

When processing LDAP entry display templates, libldap can overflow an
internal buffer by supplying a carefully crafted ldaptemplates.conf file.

When parsing an access control list, slapd can overflow an internal buffer.

When constructing the name of the file used for logging rejected
replication requests, slapd overflows an internal buffer if the size
of the generated name is too large. It can also destroy the contents of any
file owned by the user 'ldap' due to a race condition in the subsequent
creation of the log file.

All of these potential security issues are corrected by the packages
contained within this erratum.

Red Hat Linux Advanced Server users who use LDAP are advised to
install the updated OpenLDAP packages contained within this erratum.




Solution : http://rhn.redhat.com/errata/RHSA-2002-312.html
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors


Cisco WS-C3560-48PS-S 48-Port Managed Gigabit PoE Switch picture

Cisco WS-C3560-48PS-S 48-Port Managed Gigabit PoE Switch

$56.00



Cisco SG95-16 16-Port Gigabit Switch SG95-16-KR picture

Cisco SG95-16 16-Port Gigabit Switch SG95-16-KR

$47.00



Cisco WS-C3650-48FD-S 48-Port Gigabit Managed Switch picture

Cisco WS-C3650-48FD-S 48-Port Gigabit Managed Switch

$49.99



Cisco WS-C2960-48PST-L 48 pport PoE Manageable Switch picture

Cisco WS-C2960-48PST-L 48 pport PoE Manageable Switch

$55.00



HP 2530-48G 48 Port Gigabit Ethernet Network Switch J9775A picture

HP 2530-48G 48 Port Gigabit Ethernet Network Switch J9775A

$30.95



New Linksys SE3005 5-port Gigabit Ethernet Switch picture

New Linksys SE3005 5-port Gigabit Ethernet Switch

$18.99



Linksys SE3008 8 Ports Rack Mountable Gigabit Ethernet Switch picture

Linksys SE3008 8 Ports Rack Mountable Gigabit Ethernet Switch

$21.99



HP ProCurve 2530-24G J9776A 24 Port Gigabit Ethernet Managed Network Switch picture

HP ProCurve 2530-24G J9776A 24 Port Gigabit Ethernet Managed Network Switch

$34.99



HP JG937A Flexnetwork 5130-48G PoE+ 48-Port Gigabit Network Switch picture

HP JG937A Flexnetwork 5130-48G PoE+ 48-Port Gigabit Network Switch

$65.95



Netgear Prosafe Plus JGS524PE 24 Port Gigabit Switch 12 Port PoE JGS524PE-100NAS picture

Netgear Prosafe Plus JGS524PE 24 Port Gigabit Switch 12 Port PoE JGS524PE-100NAS

$129.98



Discussions

No Discussions have been posted on this vulnerability.