Logo
componentopenldap
Name
openldap
Version
2.5.16
Type
library
Description
OpenLDAP Directory Service
Licenses
OpenLDAP
PURL
-
CPE
cpe:2.3:*:openldap:openldap:2.5.16:*:*:*:*:*:*:*

Other Versions#


Project
Branch
Version
master
2.6.13
scarthgap
2.6.10

Patches#


#
Title
Author
Resolve
1
mkversion: remove user host pwd from version
Changqing Li <changqing.li@windriver.com>
2
ITS#10094 libldap/OpenSSL: fix setting ciphersuites
Howard Chu <hyc@openldap.org>
3
Patch #3
Joe Slater <jslater@windriver.com>
4
build/top.mk: unset STRIP_OPTS
Yi Zhao <yi.zhao@windriver.com>

Vulnerabilities#


Name
Analysis
Description
Exploitable
A Untrusted Search Path vulnerability in openldap2 of openSUSE Factory allows local attackers with control of the ldap user or group to change ownership of arbitrary directory entries to this user/group, leading to escalation to root. This issue affects: openSUSE Factory openldap2 versions prior to 2.6.3-404.1.