Format: 1.8 Date: Fri, 01 May 2020 13:09:12 -0400 Source: openldap Binary: ldap-utils libldap-2.4-2 libldap2-dev slapd slapd-contrib slapi-dev Architecture: armhf armhf_translations Version: 2.4.49+dfsg-2ubuntu1.2 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: ldap-utils - OpenLDAP utilities libldap-2.4-2 - OpenLDAP libraries libldap2-dev - OpenLDAP development libraries slapd - OpenLDAP server (slapd) slapd-contrib - contributed plugins for OpenLDAP slapd slapi-dev - development libraries for OpenLDAP SLAPI plugin interface Changes: openldap (2.4.49+dfsg-2ubuntu1.2) focal-security; urgency=medium . * SECURITY UPDATE: denial of service via nested search filters - debian/patches/CVE-2020-12243.patch: limit depth of nested filters in servers/slapd/filter.c. - debian/patches/fix_test_timing.patch: fix FTBFS on riscv64 because of test timing issue. - CVE-2020-12243 Checksums-Sha1: 5a6bdbf0345eb568c79ba137fa27589fcd06833c 542856 ldap-utils-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 09089d33835bddc0034e3746b838db5b783d4cf3 108964 ldap-utils_2.4.49+dfsg-2ubuntu1.2_armhf.deb 076d398b7dc0f8231c6c3d42538346f1f36807ac 529996 libldap-2.4-2-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 41b21a415e05b1ecfdd484dfae6bbf7fb0f1b101 133576 libldap-2.4-2_2.4.49+dfsg-2ubuntu1.2_armhf.deb c84827b236ac70d930021f1cbb93f6a1c2d4b887 244216 libldap2-dev_2.4.49+dfsg-2ubuntu1.2_armhf.deb b5fd37d890495868513a8ab9b576da2d2cd12d29 10650 openldap_2.4.49+dfsg-2ubuntu1.2_armhf.buildinfo f541b617d260defac930143afd636f956c32aa53 63411 openldap_2.4.49+dfsg-2ubuntu1.2_armhf_translations.tar.gz eb836589bb9d47c1d9ff1cb752797f8cc954e1ae 62384 slapd-contrib-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 60aaa1dd4de845040a0f8344fa8427b12e998059 22912 slapd-contrib_2.4.49+dfsg-2ubuntu1.2_armhf.deb cbf1e1a55a7dee4d91e577902a97a41ef62767b7 7121144 slapd-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 238cd07b5c99a9e28a154edd13958f0fe79ab18e 1304356 slapd_2.4.49+dfsg-2ubuntu1.2_armhf.deb d862dc82b1401d8e6ffd72b89fcb77b43683b2a3 14632 slapi-dev_2.4.49+dfsg-2ubuntu1.2_armhf.deb Checksums-Sha256: 1468492d0c6fe9b14615d3591df9303272dd2d7128089367d143a93e311b8555 542856 ldap-utils-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 335acb6c715420122ff595bd8810ed9307679db6f13641665af71c69ea3c96f7 108964 ldap-utils_2.4.49+dfsg-2ubuntu1.2_armhf.deb df74337b6a7e3e7eda442e88bde6b18e7e94ac016da0efc1ba7136f3343e5f56 529996 libldap-2.4-2-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 3413fc665c8d5f6370685131419962b9aeb874780e4e93253a4c458d823f6429 133576 libldap-2.4-2_2.4.49+dfsg-2ubuntu1.2_armhf.deb 9740cb25f791b01666b843c5b4290d6e5ede075c7871a7a7fd7ca20ad9aebb2a 244216 libldap2-dev_2.4.49+dfsg-2ubuntu1.2_armhf.deb 84f2a423efed8543a86c3dcb251efbbbe66798eb8c22c7fc9c895b3f7b562942 10650 openldap_2.4.49+dfsg-2ubuntu1.2_armhf.buildinfo ced54440da790141f1aff96bb99c86f1ac694d83cd079e20fb228bdf9e835587 63411 openldap_2.4.49+dfsg-2ubuntu1.2_armhf_translations.tar.gz 54e43b275a05c84c9e1d5555c8969b1eb8e2946fd7f1fa0dc634ea0c6d56da51 62384 slapd-contrib-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 7dcbd3e7ab016a991699b7c9ca07738fc5f6e54244f7f676f1d1bec960217285 22912 slapd-contrib_2.4.49+dfsg-2ubuntu1.2_armhf.deb ec52177d7a6e3666f4fc9cbfff6cf8a11858017e60717b2acf71d648405c074f 7121144 slapd-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 5489b7eec63295d33cb74651995fedcdd80c207d5ae5e4d13672447443604bf4 1304356 slapd_2.4.49+dfsg-2ubuntu1.2_armhf.deb f7d8b933f0cd72c9a1f39a4db856c8f6911f714d7a53cf9276f3c1f7ff4ddb9a 14632 slapi-dev_2.4.49+dfsg-2ubuntu1.2_armhf.deb Files: 157ac06de0cff39d7042f13e0f870448 542856 debug optional ldap-utils-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 43526b968438a514790fbd4cb89df652 108964 net optional ldap-utils_2.4.49+dfsg-2ubuntu1.2_armhf.deb 0c3307651dd1a9772422d46cf7e41586 529996 debug optional libldap-2.4-2-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 3d0d6286955a75f4244114152fca94c0 133576 libs optional libldap-2.4-2_2.4.49+dfsg-2ubuntu1.2_armhf.deb 212328211d570f379829b573f66d716f 244216 libdevel optional libldap2-dev_2.4.49+dfsg-2ubuntu1.2_armhf.deb 0f9f11b5beac19dc8f05eaa986129237 10650 net optional openldap_2.4.49+dfsg-2ubuntu1.2_armhf.buildinfo fe4979bc9c20b40b170e15eb06f9c13b 63411 raw-translations - openldap_2.4.49+dfsg-2ubuntu1.2_armhf_translations.tar.gz 65c0230ab632610f1fd5b32ea6856ba6 62384 debug optional slapd-contrib-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 93d23a3bfc36eed7309135fae445f507 22912 net optional slapd-contrib_2.4.49+dfsg-2ubuntu1.2_armhf.deb c67c0342a4e84a6314eafd4aaff402fa 7121144 debug optional slapd-dbgsym_2.4.49+dfsg-2ubuntu1.2_armhf.ddeb 3dea05a151c94b71918ab21af605d1f1 1304356 net optional slapd_2.4.49+dfsg-2ubuntu1.2_armhf.deb 65cd59b496e9c3a7836611afacdebc18 14632 libdevel optional slapi-dev_2.4.49+dfsg-2ubuntu1.2_armhf.deb Original-Maintainer: Debian OpenLDAP Maintainers