Richard Megginson
2006-Mar-02 14:55 UTC
[Fedora-directory-users] [SECURITY] Fedora Directory Server 1.0.1 Update
---------------------------------------------------------------------
Fedora Directory Server Update Notification
2006-03-01
---------------------------------------------------------------------
Product : Fedora Directory Server
Name : Directory Server
Version : 1.0.1
Release : 1
Summary : The core LDAP server engine
Description :
The core directory server component of Fedora Directory Server is the
LDAP server engine/daemon.
---------------------------------------------------------------------
Update Information:
Evgeny Legerov of GLEG, Ltd. (http://www.gleg.net/) discovered several
flaws affecting Fedora Directory Server using the GLEG ProtoVer LDAP
test suite. A remote attacker who is able to connect to the directory
server could send malicious requests which would cause the server to
crash leading to a denial of service.
The Common Vulnerabilities and Exposures project assigned the names
CVE-2006-0451, CVE-2006-0452, and CVE-2006-0453 to these issues.
---------------------------------------------------------------------
This update is available by upgrading to Fedora Directory Server 1.0.2
available here:
http://directory.fedora.redhat.com/wiki/Download
The above link has instructions for downloading the new version and
upgrading older versions.
Michael Smedeus
2006-Mar-28 14:43 UTC
[Fedora-directory-users] Bind FDS to one specific ip-address
Hi, I''m trying to bind FDS 1.0.2 on Fedora Core 4 to only listen to one specific ip-address on the regular 389 port. The machine has one physical interface, eth0, with two virtual interfaces eth0 and eth0:1 with different IP and subnets. IP on interface eth0 is already used for an OpenLDAP proxy that must not be interfered. I can''t find any solution in the documentation or FAQ''s. And test''s on a testserver with a similar setup hasn''t helped out much. Is it possible to configure FDS to only listen to eth0:1port 389 without interfering with eth0 port 389? My best M.Smedéus