Home > Security > Advisories

Advisories

Mandriva Advisories

Package name nss_ldap
Date November 3rd, 2000
Advisory ID MDKSA-2000:066
Affected versions 7.0, 7.1, 7.2
Synopsis Updated nss_ldap packages fix a race condition

Problem Description

A race condition exists in versions of nss_ldap prior to version 121.
On a system running nscd, a malicious user can cause the system to
hang.

Updated Packages

Mandrakelinux 7.0

 44f932864c4865e791d309359be9b552  7.0/RPMS/nss_ldap-122-1mdk2.i586.rpm
62090065decf69e0fe91bda69fbc740d  7.0/SRPMS/nss_ldap-122-1mdk2.src.rpm

Mandrakelinux 7.1

 48ae0b8cee5c27d86f3b1e3ff4c36af7  7.1/RPMS/nss_ldap-122-1mdk1.i586.rpm
0682fda285a8eaad9e9a7f467181d0d4  7.1/SRPMS/nss_ldap-122-1mdk1.src.rpm

Mandrakelinux 7.2

 e1f6b51807d21faddf60fc984611b243  7.2/RPMS/nss_ldap-122-1mdk1.i586.rpm
0682fda285a8eaad9e9a7f467181d0d4  7.2/SRPMS/nss_ldap-122-1mdk1.src.rpm

Upgrade

To upgrade automatically, use MandrivaUpdate.


Verification

Please verify the update prior to upgrading to ensure the integrity of the downloaded package. You can do this with the command :

                rpm --checksig package.rpm
                

You can get the GPG public key of the Mandriva Security Team to verify the GPG signature of each RPM.

If you use MandrivaUpdate, the verification of md5 checksum and GPG signature is performed automatically for you.