[SECURITY] Fedora 7 Update: openldap-2.3.34-6.fc7

updates at fedoraproject.org updates at fedoraproject.org
Thu Feb 7 20:54:16 UTC 2008

Fedora Update Notification
2008-02-05 23:08:48

Name        : openldap
Product     : Fedora 7
Version     : 2.3.34
Release     : 6.fc7
URL         : http://www.openldap.org/
Summary     : The configuration files, libraries, and documentation for OpenLDAP
Description :
OpenLDAP is an open source suite of LDAP (Lightweight Directory Access
Protocol) applications and development tools. LDAP is a set of
protocols for accessing directory services (usually phone book style
information, but other information is possible) over the Internet,
similar to the way DNS (Domain Name System) information is propagated
over the Internet. The openldap package contains configuration files,
libraries, and documentation for OpenLDAP.


* Tue Feb  5 2008 Jan Safranek <jsafranek at redhat.com> 2.3.34-6
- fix CVE-2007-6698 (#431409)
* Mon Jan 14 2008 Jan Safranek <jsafranek at redhat.com> 2.3.34-5
- fix default slurpd directory to /var/lib/ldap (#424831)
* Fri Nov  2 2007 Jan Safranek <jsafranek at redhat.com> 2.3.34-4
- fix various security flaws (#360081)
* Fri Jul 13 2007 Jan Safranek <jsafranek at redhat.com> 2.3.34-3
- Fix initscript return codes (#242667)
- Provide overlays including smbk5pwd (as modules; #246036, #245896, #220895)
- Add available modules to config file
- do not create script in /tmp on startup (bz#188298)
- add compat-slapcat to openldap-compat (bz#179378)
- do not import ddp services with migrate_services.pl
- sort the hosts by address, preventing duplicities
  in migrate*nis*.pl (bz#201540)
- start slupd for each replicated database (bz#210155)
- add ldconfig to devel post/postun (bz#240253)
- include misc.schema in default slapd.conf (bz#147805)
* Mon Apr 23 2007 Jan Safranek <jsafranek at redhat.com> 2.3.34-2
- slapadd during package update is now quiet (bz#224581)
- use _localstatedir instead of var/ during build (bz#220970)
- bind-libbind-devel removed from BuildRequires (bz#216851)
- slaptest is now quiet during service ldap start, if
  there is no error/warning (bz#143697)
- libldap_r.so now links with pthread (bz#198226)
- do not strip binaries to produce correct .debuginfo packages

  [ 1 ] Bug #431203 - CVE-2007-6698 openldap: slapd crash on NOOP control operation on entry in bdb storage

This update can be installed with the "yum" update program.  Use 
su -c 'yum update openldap' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at

More information about the Fedora-package-announce mailing list