[Pkg-fedora-ds-maintainers] Bug#860125: Bug#860125: 389-ds-base: CVE-2017-2668: Remote crash via crafted LDAP messages

Timo Aaltonen tjaalton at debian.org
Thu Apr 13 20:59:38 UTC 2017


On Thu, 13 Apr 2017, Salvatore Bonaccorso wrote:

> Control: tags -1 + patch
>
> Hi
>
> The fix apparently applied in CentOS 1.3.5.10-20.el7_3 is
>
> https://git.centos.org/raw/rpms!389-ds-base!/c9e5dad69e2b497f118efac56f43cc6c74b6a695/SOURCES!0072-fix-for-cve-2017-2668-simple-return-text-if-suffix-n.patch

Hi, would it be fine to push 1.3.5.16 which, I believe, includes fix for 
this among other bugfixes? Can't check or push it before I'm back home on 
Sunday though.

--
tjaalton at debian.org



More information about the Pkg-fedora-ds-maintainers mailing list