REDHAT-BUG-1109628: Medium severity Horde Horde LDAP vulnerability
Matthew Daley reported an issue in Horde LDAP where, if a user knew the LDAP bind user's DN, they could login without supplying a password. This has been fixed in version 2.0.6:
https://github.com/horde/horde/commit/8f719b53b0ee2d4b8a40a770430683c98fb5f2fd https://github.com/horde/horde/commit/4c3e18f1724ab39bfef10c189a5b52036a744d55
It has been fixed in Fedora via bug 1104961, and EPEL 6 via bug 1104962.
Full details available in http://seclists.org/oss-sec/2014/q2/504
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1109628?
The severity of REDHAT-BUG-1109628 is considered high due to the potential for unauthorized access.
How do I fix REDHAT-BUG-1109628?
To fix REDHAT-BUG-1109628, upgrade to Horde LDAP version 2.0.6 or later.
What is the cause of REDHAT-BUG-1109628?
REDHAT-BUG-1109628 is caused by a vulnerability that allows login without a password if the LDAP bind user's DN is known.
Which versions of Horde LDAP are affected by REDHAT-BUG-1109628?
Horde LDAP versions up to and including 2.0.6 are affected by REDHAT-BUG-1109628.
Who reported the issue for REDHAT-BUG-1109628?
The issue for REDHAT-BUG-1109628 was reported by Matthew Daley.