This bug was fixed in the package openldap -
2.6.10+dfsg-0ubuntu0.24.04.1
---------------
openldap (2.6.10+dfsg-0ubuntu0.24.04.1) noble; urgency=medium
* New upstream version (LP: #2127665):
- 2.6.10:
- Added slapd microsecond timestamp format for local logging (ITS#10140)
- Fixed libldap ldap_result behavior with LDAP_MSG_RECEIVED (ITS#10229)
- Fixed lloadd handling of starttls critical (ITS#10323)
- Fixed slapd syncrepl when used with slapo-rwm (ITS#10290)
- Fixed slapd regression with certain searches (ITS#10307)
- Fixed slapo-autoca olcAutoCAserverClass object (ITS#10288)
- Fixed slapo-pcache caching behaviors (ITS#10270)
- 2.6.9:
- Fixed libldap TLS connection timeout handling (ITS#8047)
- Fixed libldap GnuTLS incompatible pointer type (ITS#10253)
- Fixed libldap OpenSSL set_ciphersuite error handling (ITS#10223)
- Fixed libldap to check for OpenSSL EVP_Digest* failure (ITS#10224)
- Fixed slapd cn=config disallowed modification of cn=schema (ITS#10256)
- Fixed slapd syncrepl assert during refresh at shutdown (ITS#10232)
- Fixed slapd syncrepl retry state during refreshDone (ITS#10234)
- Fixed slapd-ldap use of multi-precision add for op counters (ITS#10237)
- Fixed slapd-mdb idl intersection (ITS#10233)
- Fixed slapd-wt idl intersection (ITS#10233)
- Fixed slapo-memberof to omit dynamic values (ITS#10230)
- Fixed slapo-nestgroup leak in nestgroup_memberFilter (ITS#10249)
- Fixed slapo-translucent regression with subordinate databases
(ITS#10248)
- Fixed slapo-translucent regression when requesting attributes
(ITS#10272)
- Fixed slappw-argon2 defaults to be more secure (ITS#9827)
- 2.6.8:
- Fixed libldap exit handling with OpenSSL3 again (ITS#9952)
- Fixed libldap OpenSSL channel binding digest (ITS#10216)
- Fixed slapd handling of large uid/gids peercred auth (ITS#10211)
- Fixed slapd-asyncmeta/meta target structure allocations (ITS#10197)
- Fixed slapd-meta with dynlist (ITS#10164)
- Fixed slapd-meta binds when proxying internal op (ITS#10165)
- Added slapo-nestgroup overlay (ITS#10161)
- Added slapo-memberof 'addcheck' option (ITS#10167)
- Fixed slapo-accesslog startup initialization (ITS#10170)
- Fixed slapo-constraint double free on invalid attr (ITS#10204)
- Fixed slapo-dynlist with abandoned operations (ITS#10044)
- Build
- Fixed build with gcc14.x (ITS#10166)
- Fixed back-perl with clang15 (ITS#10177)
- Fixed to reduce systemd dependencies (ITS#10214)
- Contrib
- Added slapo-alias contrib module (ITS#10104, ITS#10182)
- Fixed slapo-autogroup to work with slapo-dynlist (ITS#10185)
- Fixed smbk5pwd implicit function declaration (ITS#10206)
- Documentation
- Fixed slapo-memberof exattr requirements (ITS#7400)
- Fixed slapo-memberof is no longer deprecated (ITS#7400)
- d/p/lp2090806...TLS-...timeout-handling: removed
[upstream in 2.6.9]
- d/p/smbk5pwd-implicit-declaration: removed
[upstream in 2.6.8]
- d/p/64-bit-time-t-compat: adjust for 2.6.10
- d/slapd.{install,manpages}: install new slapo-nestgroup overlay
[from 2.6.8+dfsg-1~exp2]
- d/slapd.manpages: add slapo-autogroup overlay
[from 2.6.8+dfsg-1~exp2]
* pbkdf2 iteration configuration support (LP: #2125685)
- d/p/lp2125685-pbkdf2-configurable-rounds: make iterations configurable
- d/p/lp2125685-pbkdf2-fix-iteration-arg: fix iteration argument index
- d/t/pbkdf2-contrib: test if pbkdf2 hashing rounds are adjustable
* Enable build of ppm password quality check module (LP: #2121816)
- d/rules: build ppm password quality module
- d/p/contrib-makefiles: add build adjustment from 2.6.9+dfsg-1~exp1
(#1039740)
- d/p/ppm-cross: cross-build patch from 2.6.8+dfsg-1~exp1 (#1079533)
- d/t/ppm-contrib: test ppm password quality module
- d/control: add build dependency on libcrack2-dev for ppm
- d/slapd-contrib.{examples,install,manpages}: add ppm
-- Jonas Jelten <[email protected]> Tue, 23 Sep 2025 18:26:39
+0200
** Changed in: openldap (Ubuntu Noble)
Status: Fix Committed => Fix Released
** Changed in: openldap (Ubuntu Questing)
Status: Fix Committed => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2125685
Title:
pbkdf2 needs configurable hashing rounds for FIPS 140-3
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/2125685/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs