FreeIPA is an integrated Identity and Authentication solution for Linux/UNIX networked environments.  |

#3540 CVE-2013-1897 389-ds: unintended information exposure when rootdse is enabled [fedora-all]

Created 4 years ago by mkosek
Modified 9 months ago

Ticket was cloned from Red Hat Bugzilla (product Fedora): Bug 928948

This is an automatically created tracking bug!  It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.

For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.

For more information see:

When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s).  This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.

Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.

Please note: this issue affects multiple supported versions of Fedora.
Only one tracking bug has been filed; please ensure that it is only closed
when all affected versions are fixed.

[bug automatically created by: add-tracking-bugs]

This ticket is just a spec file update so that new FreeIPA releases requires the 389-ds-base version with CVE fix included.

Since this is a CVE fix which needs to be fixed now, moving to current release bucket.

master: f1e2465[[BR]]
ipa-3-1: 9d8121d

9 months ago

Metadata Update from @mkosek:
- Issue assigned to mkosek
- Issue set to the milestone: FreeIPA 3.2 - 2013/04 (Beta)

Login to comment on this ticket.