Multiple vulnerabilities were found in OpenLDAP, a free implementation
of the Lightweight Directory Access Protocol.
Please note this is a Debian specific vulnerability.
The new package wonβt use the unsafe access control rule for new
databases, but existing configurations wonβt be automatically
modified. Administrators are incited to look at the README.Debian
file provided by the updated package if they need to fix the access
control rule.
For the stable distribution (wheezy), these problems have been fixed in
version 2.4.31-2.
For the upcoming stable distribution (jessie), these problems have been
fixed in version 2.4.40-4.
For the unstable distribution (sid), these problems have been fixed in
version 2.4.40-4.
We recommend that you upgrade your openldap packages.
CPE | Name | Operator | Version |
---|---|---|---|
openldap | eq | 2.4.31-1+nmu2 |