Security Advisory Moderate: openldap security update

Advisory: RHSA-2014:0206-1
Type: Security Advisory
Severity: Moderate
Issued on: 2014-02-24
Last updated on: 2014-02-24
Affected Products: RHEL Desktop Workstation (v. 5 client)
Red Hat Enterprise Linux (v. 5 server)
Red Hat Enterprise Linux Desktop (v. 5 client)
CVEs (cve.mitre.org): CVE-2013-4449

Details

Updated openldap packages that fix one security issue are now available for
Red Hat Enterprise Linux 5.

The Red Hat Security Response Team has rated this update as having Moderate
security impact. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available from the CVE link in
the References section.

OpenLDAP is an open source suite of Lightweight Directory Access Protocol
(LDAP) applications and development tools. LDAP is a set of protocols used
to access and maintain distributed directory information services over an
IP network. The openldap package contains configuration files, libraries,
and documentation for OpenLDAP.

A denial of service flaw was found in the way the OpenLDAP server daemon
(slapd) performed reference counting when using the rwm (rewrite/remap)
overlay. A remote attacker able to query the OpenLDAP server could use this
flaw to crash the server by immediately unbinding from the server after
sending a search request. (CVE-2013-4449)

Red Hat would like to thank Michael Vishchers from Seven Principles AG for
reporting this issue.

All openldap users are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue.


Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

This update is available via the Red Hat Network. Details on how to use the
Red Hat Network to apply this update are available at
https://access.redhat.com/site/articles/11258

Updated packages

RHEL Desktop Workstation (v. 5 client)

SRPMS:
openldap-2.3.43-27.el5_10.src.rpm
File outdated by:  RHBA-2014:0502
    MD5: 7b8a7a62654a6e826356f5684e3c7243
SHA-256: c6c3924cc20b1edc21e12129e4ef937f792cb5c29c05d3ef66d4d81b57b8f372
 
IA-32:
openldap-debuginfo-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 43ddb7d518cc9882cfa195375d9385c4
SHA-256: f70dbc9a6ee30ce7df4d2c4b70c2e8e16b6de5f94e9e751c0ca791a2e16a1400
openldap-devel-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 52f4f855fd000df250c34d2da3ce78e7
SHA-256: ab5d704e42065a488508d82d521d00403a243a0a53c0a355af1aeac79d41aa06
openldap-servers-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: e38515bfe0020e209b96ef89fcd61f2c
SHA-256: da52f44189e8410f0285f18abc77ac655de72889d0cb614d56496c52dae2cb26
openldap-servers-overlays-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: b0489f2b3eac8f5e43bbcb4d491f4d00
SHA-256: c783d92eeeadce526e290f4ad318155e97bf454867555b2b0ea4b457316613be
openldap-servers-sql-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 1dd8c0fa81d76925a53eae58e329b8a5
SHA-256: bbebfe5e2a8770b8d56ce92dad4e47f75a56db18b1b84b87bab8e5aed97623a6
 
x86_64:
openldap-debuginfo-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 43ddb7d518cc9882cfa195375d9385c4
SHA-256: f70dbc9a6ee30ce7df4d2c4b70c2e8e16b6de5f94e9e751c0ca791a2e16a1400
openldap-debuginfo-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 5efa1fd8b2c7052441da0656b1655577
SHA-256: 4e1144b6964910ec899d3e9d1dbffa31f71ba09d27828615c0e985b1a3a2cecd
openldap-devel-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 52f4f855fd000df250c34d2da3ce78e7
SHA-256: ab5d704e42065a488508d82d521d00403a243a0a53c0a355af1aeac79d41aa06
openldap-devel-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: fb11aed173c2a6cb548126f240c855f3
SHA-256: ae73d17cd666ed65febac6f7c2d82ffb2c8f8c922d3c87dec011feb0e0d20a44
openldap-servers-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: ac3956b96f36bd8d30cee564a099cd92
SHA-256: f160b480897c2acb3105573246307680a3cbfa190d729a0859fe87e76abdd4f8
openldap-servers-overlays-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 77ed9f1b6e8ab5d15d24e6f0855a5173
SHA-256: a4b75ccbdb9818754359f3771c2125881bf5ce111cb3348f299236ca3bbc4b25
openldap-servers-sql-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: adab07288ff5d85cc6c0fa812d746ca1
SHA-256: 005ce79a3ba69cab5bb0d474c4546675e2bd92dfe5828bd4a2760904950d2bcd
 
Red Hat Enterprise Linux (v. 5 server)

SRPMS:
openldap-2.3.43-27.el5_10.src.rpm
File outdated by:  RHBA-2014:0502
    MD5: 7b8a7a62654a6e826356f5684e3c7243
SHA-256: c6c3924cc20b1edc21e12129e4ef937f792cb5c29c05d3ef66d4d81b57b8f372
 
IA-32:
compat-openldap-2.3.43_2.2.29-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: bf1428e3c2c97f340356df57db4d404a
SHA-256: 370d3f1ce2669cb39a151c89e5915f38bf8f95f00e62a6106298b2708651e95d
openldap-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 10b0bf0442e3c1e4a0c7813adad75478
SHA-256: d4088888a630f8030c9505663cddb478b24fae349fa1431a6836ceb5f28f9bf1
openldap-clients-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: c845d7c4b82952b2aec863e16051be5b
SHA-256: 6b1cade783fda31489321b2901bcc8f99727986364c978879f629c351b296302
openldap-debuginfo-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 43ddb7d518cc9882cfa195375d9385c4
SHA-256: f70dbc9a6ee30ce7df4d2c4b70c2e8e16b6de5f94e9e751c0ca791a2e16a1400
openldap-devel-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 52f4f855fd000df250c34d2da3ce78e7
SHA-256: ab5d704e42065a488508d82d521d00403a243a0a53c0a355af1aeac79d41aa06
openldap-servers-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: e38515bfe0020e209b96ef89fcd61f2c
SHA-256: da52f44189e8410f0285f18abc77ac655de72889d0cb614d56496c52dae2cb26
openldap-servers-overlays-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: b0489f2b3eac8f5e43bbcb4d491f4d00
SHA-256: c783d92eeeadce526e290f4ad318155e97bf454867555b2b0ea4b457316613be
openldap-servers-sql-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 1dd8c0fa81d76925a53eae58e329b8a5
SHA-256: bbebfe5e2a8770b8d56ce92dad4e47f75a56db18b1b84b87bab8e5aed97623a6
 
IA-64:
compat-openldap-2.3.43_2.2.29-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: bf1428e3c2c97f340356df57db4d404a
SHA-256: 370d3f1ce2669cb39a151c89e5915f38bf8f95f00e62a6106298b2708651e95d
compat-openldap-2.3.43_2.2.29-27.el5_10.ia64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 553e2e8698a0f1f5df43f1724b5dd9d0
SHA-256: c7351d09bf870f63689b8638565e9f4aa2e3bc74d377f8d027c959cf0d00e63b
openldap-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 10b0bf0442e3c1e4a0c7813adad75478
SHA-256: d4088888a630f8030c9505663cddb478b24fae349fa1431a6836ceb5f28f9bf1
openldap-2.3.43-27.el5_10.ia64.rpm
File outdated by:  RHBA-2014:0502
    MD5: e4034da2df339d68046ed9bc86b70a6e
SHA-256: 554c01953240fd20b2310ab7697d3d39eb597c113c98b3d321885fe84168fbc7
openldap-clients-2.3.43-27.el5_10.ia64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 85584a8de58a050d612f7d6912849f1b
SHA-256: c76732c47c70d484336f744110dee84ddc942a712fb837781ce58ecaaeabfc3e
openldap-debuginfo-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 43ddb7d518cc9882cfa195375d9385c4
SHA-256: f70dbc9a6ee30ce7df4d2c4b70c2e8e16b6de5f94e9e751c0ca791a2e16a1400
openldap-debuginfo-2.3.43-27.el5_10.ia64.rpm
File outdated by:  RHBA-2014:0502
    MD5: b75081389994991e7f67cf1002ded7a3
SHA-256: 8ddfd7c9e7ec2829f15bb4c92a87c68f47d8badf1fc1d9d766da838c6302430a
openldap-devel-2.3.43-27.el5_10.ia64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 26ed705125d35b13d160e2573860cf9a
SHA-256: 0680ef538806122d60c5f1b175da5020c37841fc1b2bd5fa2340aa615ec79df3
openldap-servers-2.3.43-27.el5_10.ia64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 5b667781d3edc5cda02cb603548ec11f
SHA-256: 6c7e2d62149a744ac1f8c631f1fb941f9cffe50d0f44fcca1526d4113b22dba4
openldap-servers-overlays-2.3.43-27.el5_10.ia64.rpm
File outdated by:  RHBA-2014:0502
    MD5: a14c09de379607fb80a36784060b298f
SHA-256: 4acbe21a70fc6d087ee92c5a4b20b8130e28c62c4f5217aad79fc1e96229e9b3
openldap-servers-sql-2.3.43-27.el5_10.ia64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 8b4026837eeb892a291fedb037bd6ff6
SHA-256: 35fcceb807407059b46f4f263d39dd99c2a27d84778c34aa76494f763234fdc0
 
PPC:
compat-openldap-2.3.43_2.2.29-27.el5_10.ppc.rpm
File outdated by:  RHBA-2014:0502
    MD5: 9212223b0c0036aa9085b40cb7ed6681
SHA-256: 9647e38fbd35960dc314d8a29e2005b1dc6a386068127a47d0c0e65f3f32afa5
compat-openldap-2.3.43_2.2.29-27.el5_10.ppc64.rpm
File outdated by:  RHBA-2014:0502
    MD5: b472906e0656da483ecac8194eb960d2
SHA-256: acdd3e6ba7d6a25eccb7e8a08b0eab88e3da2f2d33d72ab46e76675380e80b66
openldap-2.3.43-27.el5_10.ppc.rpm
File outdated by:  RHBA-2014:0502
    MD5: 1b0ecc51dad8a4756e92f4772dfb08d7
SHA-256: cbc0cb3f06ba735ddec760cf75d843204d584564d2fb7833a5470caafffdc470
openldap-2.3.43-27.el5_10.ppc64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 6229de39896f36ed574f02985f551023
SHA-256: 0c988c7607fd4758bb38dfb34bfd8e68d3d0a1a90ac786a75910abb6ae34b904
openldap-clients-2.3.43-27.el5_10.ppc.rpm
File outdated by:  RHBA-2014:0502
    MD5: 3daba337eb391d411b75ad4f4ff7777f
SHA-256: 7c0af2a5b946bb5e97676a639e2594ad9ef1aac2f9454a647c70d10ab874f697
openldap-debuginfo-2.3.43-27.el5_10.ppc.rpm
File outdated by:  RHBA-2014:0502
    MD5: 4123108a945e54b22c84f1190f910c94
SHA-256: 02ac2db0aa623b1fd29a18a0893b5620c805e2d2adda364617536c13edb1eac4
openldap-debuginfo-2.3.43-27.el5_10.ppc64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 2cf5f1a6a0239b073988d509d92fdabe
SHA-256: e95f5de2c3711cd9a34a72636d87b5c23e8427f317331ebd60142585325d939f
openldap-devel-2.3.43-27.el5_10.ppc.rpm
File outdated by:  RHBA-2014:0502
    MD5: 8cb2622bd0a8155c4c80e4cf0741d6d7
SHA-256: 0c3f8c1a8ab51f8bb48fcd7bdb2647269868fce4d8a9f370b357aa4dd55a2892
openldap-devel-2.3.43-27.el5_10.ppc64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 6571d56b43c3627d993ff998505c36b5
SHA-256: 736dec035596f3856e8c3de6baa6ed7919ac9db445030223b46d7dd3636bf14c
openldap-servers-2.3.43-27.el5_10.ppc.rpm
File outdated by:  RHBA-2014:0502
    MD5: 7f0b95c23cf23c9d41a75bc1edbf2576
SHA-256: 855051ebfa3159a82517c34142af99924c0c6a0d7a292510de0d9dea9bcea4a3
openldap-servers-overlays-2.3.43-27.el5_10.ppc.rpm
File outdated by:  RHBA-2014:0502
    MD5: e94efc37cfcc0988691101557680bf21
SHA-256: 68fc5f641f6c7c4982c7a8e308ee8d5f1f4e1175f260326b15cfe2c8d92f6f8a
openldap-servers-sql-2.3.43-27.el5_10.ppc.rpm
File outdated by:  RHBA-2014:0502
    MD5: 6e78c6b86485cd1d101a3a45c250f704
SHA-256: 52c7eddebf0a10c7141e847457722075ce8632b907e8fc671fae27db4152f255
 
s390x:
compat-openldap-2.3.43_2.2.29-27.el5_10.s390.rpm
File outdated by:  RHBA-2014:0502
    MD5: 3bef20d953c4d11f5ad2645fdb2f3bd1
SHA-256: a1340f3d3ea12ed31bbbc458432752c3cf369c5c3ef506f85e2fde19b89a910e
compat-openldap-2.3.43_2.2.29-27.el5_10.s390x.rpm
File outdated by:  RHBA-2014:0502
    MD5: 218cfde15cacfc41497e29c8abd00cad
SHA-256: 44c074765323c1257172ed37e597f079468e7c70b6995acb8659010c4574267c
openldap-2.3.43-27.el5_10.s390.rpm
File outdated by:  RHBA-2014:0502
    MD5: caeb2ab77c39296141367e2f9a46273a
SHA-256: 55d083460d776e005b749074d4f9b2c042c78b84eed10ed47e0301fce76d6ae8
openldap-2.3.43-27.el5_10.s390x.rpm
File outdated by:  RHBA-2014:0502
    MD5: d6ae579ffacc4b64916e9b442e631d0e
SHA-256: 6e1c2ae941056b02d1bae841e43fc5e8acb3a036dd62d1c35b0d868642b7bbb5
openldap-clients-2.3.43-27.el5_10.s390x.rpm
File outdated by:  RHBA-2014:0502
    MD5: c76492ebdc3eeb6ca148df8d85f6d9c8
SHA-256: 7657b184cec92df3dc7f2437f2c5d94e2fbbf800a80c4266370e36a1b7105163
openldap-debuginfo-2.3.43-27.el5_10.s390.rpm
File outdated by:  RHBA-2014:0502
    MD5: 32bf0ebbc4e6f079e14252741e9ed84b
SHA-256: c4cf4d5c1f28f115baf5841cb63cb55ca884140b7c471ba8b8c076718ccd4e70
openldap-debuginfo-2.3.43-27.el5_10.s390x.rpm
File outdated by:  RHBA-2014:0502
    MD5: 39ded937c09695b050e5f70b27ee816b
SHA-256: d5d9949ce24e8089ea3b7c2a5d95ebd37b32416a936b8fda6e7c7af41b33fde8
openldap-devel-2.3.43-27.el5_10.s390.rpm
File outdated by:  RHBA-2014:0502
    MD5: 0b041f2a0b7d9b05d5087030a851f6a7
SHA-256: 0c29b262fa95a5e2d9b6d626fa5ed85a4843a71d64011f0f6947f34f441a80d4
openldap-devel-2.3.43-27.el5_10.s390x.rpm
File outdated by:  RHBA-2014:0502
    MD5: 5583f8af25662a68c53c9091d3af3ded
SHA-256: c95214150a88248a83f501a318cd5f6bdd1c5dc7433f5606aaf323bad5471645
openldap-servers-2.3.43-27.el5_10.s390x.rpm
File outdated by:  RHBA-2014:0502
    MD5: 729317b25709f44d5bd112feb82f7f66
SHA-256: a2a5bf740f9479f9e7ce1869f42cd2dc5c387bbf5b2488b03d709d10df99a67f
openldap-servers-overlays-2.3.43-27.el5_10.s390x.rpm
File outdated by:  RHBA-2014:0502
    MD5: 17db702f86285d19d63630c6dce9f600
SHA-256: d73d536cd11aa04f98073d56c310c304dfdaf1dc2429781d19be2a7f23c503c9
openldap-servers-sql-2.3.43-27.el5_10.s390x.rpm
File outdated by:  RHBA-2014:0502
    MD5: 63e1614a9e676357873e2daf15e5894b
SHA-256: ced06629f3afb1010540cc3006c16dba32cc60ba9b7de9222eeb7eb9674cf6bd
 
x86_64:
compat-openldap-2.3.43_2.2.29-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: bf1428e3c2c97f340356df57db4d404a
SHA-256: 370d3f1ce2669cb39a151c89e5915f38bf8f95f00e62a6106298b2708651e95d
compat-openldap-2.3.43_2.2.29-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: d6956971d765536322f6d8e3e2eb140c
SHA-256: dc2c6c43f38905c09a06e380c8c5244eca0f35927d7e080ace57ed05a86a83af
openldap-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 10b0bf0442e3c1e4a0c7813adad75478
SHA-256: d4088888a630f8030c9505663cddb478b24fae349fa1431a6836ceb5f28f9bf1
openldap-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: c5c8535f1c5b3fbe875664030c00efdb
SHA-256: 9722e915a0933b6978cd463127deeac89c44e49a6e04f0d9bc639d7a91d407eb
openldap-clients-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 8cb22ece186ec2f19b1e5a91cff9cadf
SHA-256: 168312fa0fea53ba6883b3d44b8fabb00f6c07ee98516af33488ec3d964f3a3a
openldap-debuginfo-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 43ddb7d518cc9882cfa195375d9385c4
SHA-256: f70dbc9a6ee30ce7df4d2c4b70c2e8e16b6de5f94e9e751c0ca791a2e16a1400
openldap-debuginfo-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 5efa1fd8b2c7052441da0656b1655577
SHA-256: 4e1144b6964910ec899d3e9d1dbffa31f71ba09d27828615c0e985b1a3a2cecd
openldap-devel-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 52f4f855fd000df250c34d2da3ce78e7
SHA-256: ab5d704e42065a488508d82d521d00403a243a0a53c0a355af1aeac79d41aa06
openldap-devel-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: fb11aed173c2a6cb548126f240c855f3
SHA-256: ae73d17cd666ed65febac6f7c2d82ffb2c8f8c922d3c87dec011feb0e0d20a44
openldap-servers-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: ac3956b96f36bd8d30cee564a099cd92
SHA-256: f160b480897c2acb3105573246307680a3cbfa190d729a0859fe87e76abdd4f8
openldap-servers-overlays-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 77ed9f1b6e8ab5d15d24e6f0855a5173
SHA-256: a4b75ccbdb9818754359f3771c2125881bf5ce111cb3348f299236ca3bbc4b25
openldap-servers-sql-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: adab07288ff5d85cc6c0fa812d746ca1
SHA-256: 005ce79a3ba69cab5bb0d474c4546675e2bd92dfe5828bd4a2760904950d2bcd
 
Red Hat Enterprise Linux Desktop (v. 5 client)

SRPMS:
openldap-2.3.43-27.el5_10.src.rpm
File outdated by:  RHBA-2014:0502
    MD5: 7b8a7a62654a6e826356f5684e3c7243
SHA-256: c6c3924cc20b1edc21e12129e4ef937f792cb5c29c05d3ef66d4d81b57b8f372
 
IA-32:
compat-openldap-2.3.43_2.2.29-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: bf1428e3c2c97f340356df57db4d404a
SHA-256: 370d3f1ce2669cb39a151c89e5915f38bf8f95f00e62a6106298b2708651e95d
openldap-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 10b0bf0442e3c1e4a0c7813adad75478
SHA-256: d4088888a630f8030c9505663cddb478b24fae349fa1431a6836ceb5f28f9bf1
openldap-clients-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: c845d7c4b82952b2aec863e16051be5b
SHA-256: 6b1cade783fda31489321b2901bcc8f99727986364c978879f629c351b296302
openldap-debuginfo-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 43ddb7d518cc9882cfa195375d9385c4
SHA-256: f70dbc9a6ee30ce7df4d2c4b70c2e8e16b6de5f94e9e751c0ca791a2e16a1400
 
x86_64:
compat-openldap-2.3.43_2.2.29-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: bf1428e3c2c97f340356df57db4d404a
SHA-256: 370d3f1ce2669cb39a151c89e5915f38bf8f95f00e62a6106298b2708651e95d
compat-openldap-2.3.43_2.2.29-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: d6956971d765536322f6d8e3e2eb140c
SHA-256: dc2c6c43f38905c09a06e380c8c5244eca0f35927d7e080ace57ed05a86a83af
openldap-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 10b0bf0442e3c1e4a0c7813adad75478
SHA-256: d4088888a630f8030c9505663cddb478b24fae349fa1431a6836ceb5f28f9bf1
openldap-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: c5c8535f1c5b3fbe875664030c00efdb
SHA-256: 9722e915a0933b6978cd463127deeac89c44e49a6e04f0d9bc639d7a91d407eb
openldap-clients-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 8cb22ece186ec2f19b1e5a91cff9cadf
SHA-256: 168312fa0fea53ba6883b3d44b8fabb00f6c07ee98516af33488ec3d964f3a3a
openldap-debuginfo-2.3.43-27.el5_10.i386.rpm
File outdated by:  RHBA-2014:0502
    MD5: 43ddb7d518cc9882cfa195375d9385c4
SHA-256: f70dbc9a6ee30ce7df4d2c4b70c2e8e16b6de5f94e9e751c0ca791a2e16a1400
openldap-debuginfo-2.3.43-27.el5_10.x86_64.rpm
File outdated by:  RHBA-2014:0502
    MD5: 5efa1fd8b2c7052441da0656b1655577
SHA-256: 4e1144b6964910ec899d3e9d1dbffa31f71ba09d27828615c0e985b1a3a2cecd
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

1019490 - CVE-2013-4449 openldap: segfault on certain queries with rwm overlay


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/