First published: Wed May 06 2020(Updated: )
USN-4352-1 fixed a vulnerability in OpenLDAP. This update provides the corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM. Original advisory details: It was discovered that OpenLDAP incorrectly handled certain queries. A remote attacker could possibly use this issue to cause OpenLDAP to consume resources, resulting in a denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/slapd | <2.4.31-1+nmu2ubuntu8.5+esm2 | 2.4.31-1+nmu2ubuntu8.5+esm2 |
=14.04 | ||
All of | ||
ubuntu/slapd | <2.4.28-1.1ubuntu4.10 | 2.4.28-1.1ubuntu4.10 |
=12.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-4352-2 is not specified.
To fix USN-4352-2, update the OpenLDAP package to version 2.4.31-1+nmu2ubuntu8.5+esm2 for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
The affected software for USN-4352-2 is Ubuntu 12.04 and Ubuntu 14.04.
More information about USN-4352-2 can be found at the following references: - [CVE-2020-12243](https://ubuntu.com/security/CVE-2020-12243) - [USN-4352-1](https://ubuntu.com/security/notices/USN-4352-1) - [Ubuntu OpenLDAP Security Notices](https://launchpad.net/ubuntu/+source/openldap/2.4.31-1+nmu2ubuntu8.5+esm2)