Date: Fri, 25 Feb 2011 11:18:08 -0500 (EST) From: Josh Bressers <bressers@...hat.com> To: oss-security@...ts.openwall.com Cc: "Steven M. Christey" <coley@...us.mitre.org> Subject: Re: CVE Request -- OpenLDAP -- two issues ----- Original Message ----- > Hello Josh, Steve, vendors, > > looks like the following two issues did not get a CVE identifiers yet: >  http://secunia.com/advisories/43331/ The above advisory covers both bugs below. >  http://www.openldap.org/its/index.cgi/Software%20Bugs?id=6607 CVE-2011-1024 openldap forwarded bind failure messages cause success >  http://www.openldap.org/its/index.cgi/Software%20Bugs?id=6661 CVE-2011-1025 openldap rootpw is not verified with slapd.conf Thanks. -- JB
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Powered by Openwall GNU/*/Linux - Powered by OpenVZ