Bug Fix Advisory Updated mod_authz_ldap package for Stronghold 4.0 now available

Advisory: RHBA-2003:078-04
Type: Bug Fix Advisory
Severity: N/A
Issued on: 2003-06-30
Last updated on: 2003-06-30
Affected Products: Red Hat Stronghold for Enterprise Linux
OVAL: N/A

Details

An updated mod_authz_ldap package is now available, fixing a bug
that prevented non-LDAP-based user authentication from being used when
mod_authz_ldap is loaded.

The mod_authz_ldap module is an Apache module that can be used to
authenticate users against an LDAP database using either simple HTTP
authentication or advanced authentication, based on the SSL client
certificate used.

A bug in mod_authz_ldap version 0.21 and earlier prevents
authentication from being performed by other Apache modules (such as
file-based authentication using mod_auth) when the mod_authz_ldap module
is loaded.

This erratum includes a new mod_authz_ldap package with a back-ported fix
for this bug. Users of mod_authz_ldap in Stronghold 4.0 should upgrade to
this package.


Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

To update all RPMs for your particular architecture, run:

rpm -Fvh [filenames]

where [filenames] is a list of the RPMs you wish to upgrade. Only those
RPMs which are currently installed will be updated. Those RPMs which are
not installed but included in the list will not be updated. Note that you
can also use wildcards (*.rpm) if your current directory *only* contains the
desired RPMs.

Please note that this update is also available via Red Hat Network. Many
people find this an easier way to apply updates. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

Updated packages

Red Hat Stronghold for Enterprise Linux

SRPMS:
mod_authz_ldap-0.19-4.src.rpm     5fcb9644cc0f05317acdb98ecc0d5436
 
IA-32:
mod_authz_ldap-0.19-4.i386.rpm     359f719a99c15a1798d15d91f54c2b2f
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

80057 - mod_authz_ldap prevents use of other auth mechanisms if loaded


Keywords

LDAP, mod_authz_ldap, Stronghold


These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/