Release date:
Updated on:
Affected Systems:
OpenLDAP <2.4.30
RedHat Linux
Unaffected system:
OpenLDAP 2.4.30
Description:
--------------------------------------------------------------------------------
Bugtraq id: 52404
CVE (CAN) ID: CVE-2012-1164
OpenLDAP is an open-source Lightweight Directory Access Protocol (LDAP) implementation.
OpenLDAP has a remote denial of service vulnerability. Attackers can exploit this vulnerability to crash the affected server Load balancer, resulting in DOS.
<* Source: Mattias andresson
Link: http://www.openldap.org/its/index.cgi/Software%20Bugs? Id = 7143
Http://www.openldap.org/its/index.cgi? Findid = 7285
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
OpenLDAP
--------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.openldap.org/software/release/changes.html