This bug was fixed in the package openldap - 2.4.25-1.1ubuntu4.1
---------------
openldap (2.4.25-1.1ubuntu4.1) oneiric-security; urgency=low
* SECURITY UPDATE: potential denial of service (LP: #884163)
- debian/patches/CVE-2011-4079: fix off by one error in
postalAddressNormalize()
- CVE-2011-4079
-- Jamie Strandboge <[email protected]> Mon, 14 Nov 2011 13:22:54 -0600
** Changed in: openldap (Ubuntu Oneiric)
Status: Fix Committed => Fix Released
** Changed in: openldap (Ubuntu Natty)
Status: Fix Committed => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openldap in Ubuntu.
https://bugs.launchpad.net/bugs/884163
Title:
OpenLDAP "UTF8StringNormalize()" Off-by-One Denial of Service
Vulnerability
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/884163/+subscriptions
--
Ubuntu-server-bugs mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs