Overview

Request 548604 revoked

- Cherry pick upstream CVE fixes:
* 0001-Ticket-48375-SimplePagedResults-in-the-search-error-.patch
* 0002-Ticket-48406-Avoid-self-deadlock-by-PR_Lock-conn-c_m.patch
* 0003-Ticket-48924-Fixup-tombstone-task-needs-to-set-prope.patch
* 0004-Subject-PATCH-1-2-Bug-1347760-CVE-2016-4992-389-ds-b.patch
* 0005-Bug-1347760-CVE-2016-4992-389-ds-base-Information-di.patch
* 0006-Bug-1347760-CVE-2016-4992-389-ds-base-Information-di.patch
* 0007-Ticket-bz1358565-clear-and-unsalted-password-types-a.patch
* 0008-Ticket-bz1358565-clear-and-unsalted-password-types-a.patch
* 0009-Ticket-bz1358565-clear-and-unsalted-password-types-a.patch
* 0010-Ticket-bz1358565-clear-and-unsalted-password-types-a.patch
* 0011-Ticket-48986-47808-triggers-overflow-in-uiduniq.c.patch
* 0012-Ticket-49336-SECURITY-1.3.5.x-Locked-account-provide.patch
* 0013-Fix-for-cve-2017-2668-Remote-crash-via-crafted-LDAP-.patch
* 0014-Ticket-48412-worker-threads-do-not-detect-abnormally.patch
For bsc#1051997, bsc#1007004, bsc#1020670, bsc#1069074, bsc#1069067,
bsc#997256 that correspond to CVE-2017-7551, CVE-2016-5405,
CVE-2017-2668, CVE-2017-2668, CVE-2016-4992.


Andreas Stieger's avatar

Patch 1 is not applied in %prep?

Request History
Howard Guo's avatar

guohouzuo created request

- Cherry pick upstream CVE fixes:
* 0001-Ticket-48375-SimplePagedResults-in-the-search-error-.patch
* 0002-Ticket-48406-Avoid-self-deadlock-by-PR_Lock-conn-c_m.patch
* 0003-Ticket-48924-Fixup-tombstone-task-needs-to-set-prope.patch
* 0004-Subject-PATCH-1-2-Bug-1347760-CVE-2016-4992-389-ds-b.patch
* 0005-Bug-1347760-CVE-2016-4992-389-ds-base-Information-di.patch
* 0006-Bug-1347760-CVE-2016-4992-389-ds-base-Information-di.patch
* 0007-Ticket-bz1358565-clear-and-unsalted-password-types-a.patch
* 0008-Ticket-bz1358565-clear-and-unsalted-password-types-a.patch
* 0009-Ticket-bz1358565-clear-and-unsalted-password-types-a.patch
* 0010-Ticket-bz1358565-clear-and-unsalted-password-types-a.patch
* 0011-Ticket-48986-47808-triggers-overflow-in-uiduniq.c.patch
* 0012-Ticket-49336-SECURITY-1.3.5.x-Locked-account-provide.patch
* 0013-Fix-for-cve-2017-2668-Remote-crash-via-crafted-LDAP-.patch
* 0014-Ticket-48412-worker-threads-do-not-detect-abnormally.patch
For bsc#1051997, bsc#1007004, bsc#1020670, bsc#1069074, bsc#1069067,
bsc#997256 that correspond to CVE-2017-7551, CVE-2016-5405,
CVE-2017-2668, CVE-2017-2668, CVE-2016-4992.


Maintenance Bot's avatar

maintbot added 389-ds as a reviewer

Submission for 389-ds by someone who is not maintainer in the devel project (network:ldap). Please review


Maintenance Bot's avatar

maintbot accepted review

ok


Howard Guo's avatar

guohouzuo declined review

ooops


Howard Guo's avatar

guohouzuo declined request

ooops


Howard Guo's avatar

guohouzuo revoked request

openSUSE Build Service is sponsored by