This bug was fixed in the package openldap2.3 - 2.4.9-1ubuntu1 --------------- openldap2.3 (2.4.9-1ubuntu1) intrepid; urgency=low
* Merge from debian unstable, remaining changes: - debian/apparmor-profile: add AppArmor profile - debian/slapd.postinst: Reload AA profile on configuration - updated debian/slapd.README.Debian for note on AppArmor - debian/control: Recommends apparmor >= 2.1+1075-0ubuntu6 - debian/control: Conflicts with apparmor-profiles << 2.1+1075-0ubuntu4 to make sure that if earlier version of apparmour-profiles gets installed it won't overwrite our profile. - Modify Maintainer value to match the DebianMaintainerField speficication. - follow ApparmorProfileMigration and force apparmor compalin mode on some upgrades (LP: #203529) - debian/slapd.dirs: add etc/apparmor.d/force-complain - debian/slapd.preinst: create symlink for force-complain on pre-feisty upgrades, upgrades where apparmor-profiles profile is unchanged (ie non-enforcing) and upgrades where apparmor profile does not exist. - debian/slapd.postrm: remove symlink in force-complain/ on purge - debian/rules, debian/slapd.links: use hard links to slapd instead of symlinks for slap* so these applications aren't confined by apparmor (LP: #203898) - debian/patches/fix-assertion-io.patch: Fixes ber_flush2 assertion. (LP: #215904) - debian/patches/fix-dnpretty-assertion.patch: Fix dnPrettyNormal assertion error. (LP: #234196) - dropped debian/patches/fix-notify-crasher.patch: Fix modify timestamp crashes. (LP: #220724) - dropped debian/patches/SECURITY_CVE-2008-0658.patch. Already applied upstream. * Added debian/patches/fix-ucred-libc due to changes how newer glibc handle the ucred struct now. openldap2.3 (2.4.9-1) unstable; urgency=low [ Updated debconf translations ] * French, thanks to Christian Perrier <[EMAIL PROTECTED]>. Closes: #471792. * Finnish, thanks to Esko Arajärvi <[EMAIL PROTECTED]>. Closes: #475238. * Czech, thanks to Miroslav Kure <[EMAIL PROTECTED]>. Closes: #480138. * Basque, thanks to Piarres Beobide <[EMAIL PROTECTED]>. Closes: #480177. * Vietnamese, thanks to Clytie Siddall <[EMAIL PROTECTED]>. Closes: #480181. * Galician, thanks to Jacobo Tarrio <[EMAIL PROTECTED]>. Closes: #480218. * Japanese, thanks to Kenshi Muto <[EMAIL PROTECTED]>. Closes: #480247. * Italian, thanks to Luca Monducci <[EMAIL PROTECTED]>. (Closes: #477718) * Brazilian Portuguese, thanks to Eder L. Marques <[EMAIL PROTECTED]> (Closes: #480172) * Portuguese, thanks to Tiago Fernandes <[EMAIL PROTECTED]> (Closes: #481126) * Russian, thanks to Yuri Kozlov <[EMAIL PROTECTED]> (Closes: #481214) * Dutch, thanks to "cobaco (aka Bart Cornelis)" <[EMAIL PROTECTED]>. Closes: #483014. [ Matthijs Mohlmann ] * New upstream release. - Bad entryUUID no longer crashes slapd. (Closes: #471867) - Fix assertion failure in some modify operations. (Closes: #474161) - Mention index in slapd.conf's man page. (Closes: #414650) - Fixes to slapd include handling. (Closes: #457261) - Fix syncrepl cookie truncation. (Closes: #464024) - Fix memory allocation in ldap_parse_page_control. (Closes: #464877) - Fix slapd crash when accessed by multiple threads. (Closes: #479237) * Acknowledge NMU. (Closes: #474976, #471225, #475856, #474652, #465875) * Bump Standards-Version to 3.7.3 * Add versioned build dependency on libgnutls-dev (Closes: #466558) [ Russ Allbery ] * Use MAXPATHLEN rather than PATH_MAX, since OpenLDAP defines the former and the latter isn't defined on GNU Hurd. Thanks, Samuel Thibault. (Closes: #475744) openldap2.3 (2.4.7-6.3) unstable; urgency=low * Non-maintainer upload. * Install all slapd relevant manpages into slapd package. (closes: #474976) * Make libldap-2.4-2 conflict against libldap2. (closes: #475856) openldap2.3 (2.4.7-6.2) unstable; urgency=low * Non-maintainer upload to solve release goal issues. * Add LSB dependency header to init.d scripts (Closes: #474652) openldap2.3 (2.4.7-6.1) unstable; urgency=high * Non-maintainer upload by security team. * Fix possible remote denial of service vulnerability in the BDB backend via a modrdn operation with a NOOP control (CVE-2008-0658; Closes: #465875). -- Chuck Short <[EMAIL PROTECTED]> Fri, 30 May 2008 17:09:53 +0100 ** Changed in: openldap2.3 (Ubuntu Intrepid) Status: Triaged => Fix Released ** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2008-0658 -- [SRU] (ITS#5518) Assertion error in io.c:234: ber_flush2 https://bugs.launchpad.net/bugs/215904 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs