Buildroot Archive on lore.kernel.org
 help / color / mirror / Atom feed
* [Buildroot] [PATCH] package/openldap: security bump to version 2.4.50
@ 2020-05-19 13:27 stefan at astylos.dk
  2020-05-19 19:03 ` Yann E. MORIN
  2020-05-29 21:26 ` Peter Korsgaard
  0 siblings, 2 replies; 3+ messages in thread
From: stefan at astylos.dk @ 2020-05-19 13:27 UTC (permalink / raw)
  To: buildroot

From: Stefan S?rensen <stefan.sorensen@spectralink.com>

Security fixes:
 CVE-2020-12243: Fixed slapd to limit depth of nested filters

Signed-off-by: Stefan S?rensen <stefan.sorensen@spectralink.com>
---
 package/openldap/openldap.hash | 12 ++++++------
 package/openldap/openldap.mk   |  2 +-
 2 files changed, 7 insertions(+), 7 deletions(-)

diff --git a/package/openldap/openldap.hash b/package/openldap/openldap.hash
index 7f159cb6d0..074caf9fb2 100644
--- a/package/openldap/openldap.hash
+++ b/package/openldap/openldap.hash
@@ -1,7 +1,7 @@
-# From https://www.openldap.org/software/download/OpenLDAP/openldap-release/openldap-2.4.49.md5
-md5 2a47a6bb4319357ea7b032c45283e79e  openldap-2.4.49.tgz
-# From https://www.openldap.org/software/download/OpenLDAP/openldap-release/openldap-2.4.49.sha1
-sha1 f0caeca122e6f90e6ac5cc8ba36fe9cec13826da  openldap-2.4.49.tgz
+# From https://www.openldap.org/software/download/OpenLDAP/openldap-release/openldap-2.4.50.md5
+md5  f9ed44ef373abed04c9e4c8586260f9e  openldap-2.4.50.tgz
+# From https://www.openldap.org/software/download/OpenLDAP/openldap-release/openldap-2.4.50.sha1
+sha1 82f576e0d0d334e9e798d9de8936683546247bb9  openldap-2.4.50.tgz
 # Locally computed
-sha256 e3b117944b4180f23befe87d0dcf47f29de775befbc469dcf4ac3dab3311e56e  openldap-2.4.49.tgz
-sha256 310fe25c858a9515fc8c8d7d1f24a67c9496f84a91e0a0e41ea9975b1371e569  LICENSE
+sha256  5cb57d958bf5c55a678c6a0f06821e0e5504d5a92e6a33240841fbca1db586b8  openldap-2.4.50.tgz
+sha256  310fe25c858a9515fc8c8d7d1f24a67c9496f84a91e0a0e41ea9975b1371e569  LICENSE
diff --git a/package/openldap/openldap.mk b/package/openldap/openldap.mk
index a5f6067494..a9e71be595 100644
--- a/package/openldap/openldap.mk
+++ b/package/openldap/openldap.mk
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-OPENLDAP_VERSION = 2.4.49
+OPENLDAP_VERSION = 2.4.50
 OPENLDAP_SOURCE = openldap-$(OPENLDAP_VERSION).tgz
 OPENLDAP_SITE = https://www.openldap.org/software/download/OpenLDAP/openldap-release
 OPENLDAP_LICENSE = OpenLDAP Public License
-- 
2.25.4

^ permalink raw reply related	[flat|nested] 3+ messages in thread

* [Buildroot] [PATCH] package/openldap: security bump to version 2.4.50
  2020-05-19 13:27 [Buildroot] [PATCH] package/openldap: security bump to version 2.4.50 stefan at astylos.dk
@ 2020-05-19 19:03 ` Yann E. MORIN
  2020-05-29 21:26 ` Peter Korsgaard
  1 sibling, 0 replies; 3+ messages in thread
From: Yann E. MORIN @ 2020-05-19 19:03 UTC (permalink / raw)
  To: buildroot

Stefan, All,

On 2020-05-19 15:27 +0200, stefan at astylos.dk spake thusly:
> From: Stefan S?rensen <stefan.sorensen@spectralink.com>
> 
> Security fixes:
>  CVE-2020-12243: Fixed slapd to limit depth of nested filters
> 
> Signed-off-by: Stefan S?rensen <stefan.sorensen@spectralink.com>

Applied to master, thanks.

Regards,
Yann E. MORIN.

> ---
>  package/openldap/openldap.hash | 12 ++++++------
>  package/openldap/openldap.mk   |  2 +-
>  2 files changed, 7 insertions(+), 7 deletions(-)
> 
> diff --git a/package/openldap/openldap.hash b/package/openldap/openldap.hash
> index 7f159cb6d0..074caf9fb2 100644
> --- a/package/openldap/openldap.hash
> +++ b/package/openldap/openldap.hash
> @@ -1,7 +1,7 @@
> -# From https://www.openldap.org/software/download/OpenLDAP/openldap-release/openldap-2.4.49.md5
> -md5 2a47a6bb4319357ea7b032c45283e79e  openldap-2.4.49.tgz
> -# From https://www.openldap.org/software/download/OpenLDAP/openldap-release/openldap-2.4.49.sha1
> -sha1 f0caeca122e6f90e6ac5cc8ba36fe9cec13826da  openldap-2.4.49.tgz
> +# From https://www.openldap.org/software/download/OpenLDAP/openldap-release/openldap-2.4.50.md5
> +md5  f9ed44ef373abed04c9e4c8586260f9e  openldap-2.4.50.tgz
> +# From https://www.openldap.org/software/download/OpenLDAP/openldap-release/openldap-2.4.50.sha1
> +sha1 82f576e0d0d334e9e798d9de8936683546247bb9  openldap-2.4.50.tgz
>  # Locally computed
> -sha256 e3b117944b4180f23befe87d0dcf47f29de775befbc469dcf4ac3dab3311e56e  openldap-2.4.49.tgz
> -sha256 310fe25c858a9515fc8c8d7d1f24a67c9496f84a91e0a0e41ea9975b1371e569  LICENSE
> +sha256  5cb57d958bf5c55a678c6a0f06821e0e5504d5a92e6a33240841fbca1db586b8  openldap-2.4.50.tgz
> +sha256  310fe25c858a9515fc8c8d7d1f24a67c9496f84a91e0a0e41ea9975b1371e569  LICENSE
> diff --git a/package/openldap/openldap.mk b/package/openldap/openldap.mk
> index a5f6067494..a9e71be595 100644
> --- a/package/openldap/openldap.mk
> +++ b/package/openldap/openldap.mk
> @@ -4,7 +4,7 @@
>  #
>  ################################################################################
>  
> -OPENLDAP_VERSION = 2.4.49
> +OPENLDAP_VERSION = 2.4.50
>  OPENLDAP_SOURCE = openldap-$(OPENLDAP_VERSION).tgz
>  OPENLDAP_SITE = https://www.openldap.org/software/download/OpenLDAP/openldap-release
>  OPENLDAP_LICENSE = OpenLDAP Public License
> -- 
> 2.25.4
> 
> _______________________________________________
> buildroot mailing list
> buildroot at busybox.net
> http://lists.busybox.net/mailman/listinfo/buildroot

-- 
.-----------------.--------------------.------------------.--------------------.
|  Yann E. MORIN  | Real-Time Embedded | /"\ ASCII RIBBON | Erics' conspiracy: |
| +33 662 376 056 | Software  Designer | \ / CAMPAIGN     |  ___               |
| +33 561 099 427 `------------.-------:  X  AGAINST      |  \e/  There is no  |
| http://ymorin.is-a-geek.org/ | _/*\_ | / \ HTML MAIL    |   v   conspiracy.  |
'------------------------------^-------^------------------^--------------------'

^ permalink raw reply	[flat|nested] 3+ messages in thread

* [Buildroot] [PATCH] package/openldap: security bump to version 2.4.50
  2020-05-19 13:27 [Buildroot] [PATCH] package/openldap: security bump to version 2.4.50 stefan at astylos.dk
  2020-05-19 19:03 ` Yann E. MORIN
@ 2020-05-29 21:26 ` Peter Korsgaard
  1 sibling, 0 replies; 3+ messages in thread
From: Peter Korsgaard @ 2020-05-29 21:26 UTC (permalink / raw)
  To: buildroot

>>>>> "stefan" == stefan  <stefan@astylos.dk> writes:

 > From: Stefan S?rensen <stefan.sorensen@spectralink.com>
 > Security fixes:
 >  CVE-2020-12243: Fixed slapd to limit depth of nested filters

 > Signed-off-by: Stefan S?rensen <stefan.sorensen@spectralink.com>

Committed to 2020.02.x, thanks.

-- 
Bye, Peter Korsgaard

^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2020-05-29 21:26 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2020-05-19 13:27 [Buildroot] [PATCH] package/openldap: security bump to version 2.4.50 stefan at astylos.dk
2020-05-19 19:03 ` Yann E. MORIN
2020-05-29 21:26 ` Peter Korsgaard

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox