INFSA-2024:4264: OpenLDAP security update

Information about definition

Identificator: INFSA-2024:4264

Type: security

Release date: 2024-08-23 19:14:04 UTC

Information about package

OpenLDAP is an open-source suite of Lightweight Directory Access Protocol (LDAP) applications and development tools. LDAP is a set of protocols used to access and maintain distributed directory information services over an IP network.

Vulnerabilities description

  • CVE-2023-2953

    A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.

Severity level

CVE Score CVSS 2.0 Score CVSS 3.x Score CVSS 4.0
NIST — CVE-2023-2953
no information 7.1 no information
Critical, important, moderate, low

Updated packages