SciLinux: CVE-2006-4600 openldap SL4.x i386/x86_64
Summary
Date: Mon, 14 May 2007 15:54:10 -0500Reply-To: Connie SiehSender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for openldap on SL4.x i386/x86_64Comments: To: scientific Synopsis: Low: openldap security updateIssue date: 2007-05-01CVE Names: CVE-2006-4600A flaw was found in the way OpenLDAP handled selfwrite access. Users withselfwrite access were able to modify the distinguished name of any user.(CVE-2006-4600)SRPMS: openldap-2.2.13-7.4E.src.rpmi386: compat-openldap-2.1.30-7.4E.i386.rpm openldap-2.2.13-7.4E.i386.rpm openldap-clients-2.2.13-7.4E.i386.rpm openldap-devel-2.2.13-7.4E.i386.rpm openldap-servers-2.2.13-7.4E.i386.rpm openldap-servers-sql-2.2.13-7.4E.i386.rpmx86_64: compat-openldap-2.1.30-7.4E.i386.rpm compat-openldap-2.1.30-7.4E.x86_64.rpm openldap-2.2.13-7.4E.i386.rpm openldap-2.2.13-7.4E.x86_64.rpm openldap-clients-2.2.13-7.4E.x86_64.rpm openldap-devel-2.2.13-7.4E.x86_64.rpm openldap-servers-2.2.13-7.4E.x86_64.rpm openldap-servers-sql-2.2.13-7.4E.x86_64.rpm-Connie Sieh-Troy Dawson