Synopsis: Important: 389-ds-base security update
Advisory ID: SLSA-2013:1182-1
Issue Date: 2013-08-28
CVE Numbers: CVE-2013-4283
—
It was discovered that the 389 Directory Server did not properly handle
the receipt of certain MOD operations with a bogus Distinguished Name
(DN). A remote, unauthenticated attacker could use this flaw to cause the
389 Directory Server to crash. (CVE-2013-4283)
After installing this update, the 389 server service will be restarted
automatically.
—
SL6
x86_64
389-ds-base-1.2.11.15-22.el6_4.x86_64.rpm
389-ds-base-debuginfo-1.2.11.15-22.el6_4.i686.rpm
389-ds-base-debuginfo-1.2.11.15-22.el6_4.x86_64.rpm
389-ds-base-devel-1.2.11.15-22.el6_4.i686.rpm
389-ds-base-devel-1.2.11.15-22.el6_4.x86_64.rpm
389-ds-base-libs-1.2.11.15-22.el6_4.i686.rpm
389-ds-base-libs-1.2.11.15-22.el6_4.x86_64.rpm
i386
389-ds-base-1.2.11.15-22.el6_4.i686.rpm
389-ds-base-debuginfo-1.2.11.15-22.el6_4.i686.rpm
389-ds-base-devel-1.2.11.15-22.el6_4.i686.rpm
389-ds-base-libs-1.2.11.15-22.el6_4.i686.rpm
– Scientific Linux Development Team