Description
This update for ldb, samba, talloc, tdb, tevent fixes the following
security issues and bugs:
The Samba LDB was updated to version 1.1.24:
- Fix ldap \00 search expression attack dos; CVE-2015-3223; (bso#11325)
- Fix remote read memory exploit in ldb; CVE-2015-5330; (bso#11599)
- Move ldb_(un)pack_data into ldb_module.h for testing
- Fix installation of _ldb_text.py
- Fix propagation of ldb errors through tdb
- Fix bug triggered by having an empty message in database during search
Samba was updated to fix these issues:
- Malicious request can cause Samba LDAP server to hang, spinning using
CPU; CVE-2015-3223; (bso#11325); (bnc#958581)