Bugzilla will be upgraded to version 5.0. The upgrade date is tentatively scheduled for 2 December 2018, pending final testing and feedback.
Bug 1429812 - [CodeChange][RFE] unboundid-ldapsdk-4.0.5 is available
[CodeChange][RFE] unboundid-ldapsdk-4.0.5 is available
Status: CLOSED ERRATA
Product: Red Hat Enterprise Virtualization Manager
Classification: Red Hat
Component: unboundid-ldapsdk (Show other bugs)
unspecified
Unspecified Unspecified
high Severity medium
: ovirt-4.2.3
: ---
Assigned To: Sandro Bonazzola
Pavol Brilla
: FutureFeature, Rebase, Triaged
Depends On: 1429722
Blocks:
  Show dependency treegraph
 
Reported: 2017-03-07 02:09 EST by Sandro Bonazzola
Modified: 2018-05-15 13:31 EDT (History)
12 users (show)

See Also:
Fixed In Version: unboundid-ldapsdk-4.0.5-1.el7ev
Doc Type: Rebase: Bug Fixes and Enhancements
Doc Text:
Version 4.0.5 of the UnboundID LDAP SDK for Java fixes CVE-2018-1000134. See https://nawilson.com/2018/03/19/cve-2018-1000134-and-the-unboundid-ldap-sdk-for-java/ for more information.
Story Points: ---
Clone Of: 1429722
Environment:
Last Closed: 2018-05-15 13:31:17 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: Integration
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---
gklein: testing_plan_complete-


Attachments (Terms of Use)


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Product Errata RHEA-2018:1464 None None None 2018-05-15 13:31 EDT

  None (edit)
Description Sandro Bonazzola 2017-03-07 02:09:34 EST
+++ This bug was initially created as a clone of Bug #1429722 +++

Latest upstream release: 3.2.1
Current version/release in rawhide: 3.2.0-2.fc26
URL: https://www.ldap.com/unboundid-ldap-sdk-for-java

Please consult the package updates policy before you issue an update to a stable branch: https://fedoraproject.org/wiki/Updates_Policy

More information about the service that created this bug can be found at: https://fedoraproject.org/wiki/Upstream_release_monitoring

Please keep in mind that with any upstream change, there may also be packaging changes that need to be made. Specifically, please remember that it is your responsibility to review the new version to ensure that the licensing is still correct and that no non-free or legally problematic items have been added upstream.

Based on the information from anitya:  https://release-monitoring.org/project/6199/

--- Additional comment from Upstream Release Monitoring on 2017-03-06 19:13:54 EST ---



--- Additional comment from Upstream Release Monitoring on 2017-03-06 19:16:36 EST ---

hotness's scratch build of unboundid-ldapsdk-3.2.1-1.el7.src.rpm for rawhide completed http://koji.fedoraproject.org/koji/taskinfo?taskID=18235243

--- Additional comment from Upstream Release Monitoring on 2017-03-07 01:48:24 EST ---

sbonazzo's unboundid-ldapsdk-3.2.1-1.fc27 completed http://koji.fedoraproject.org/koji/buildinfo?buildID=865397

--- Additional comment from Fedora Update System on 2017-03-07 02:07:34 EST ---

unboundid-ldapsdk-3.2.1-1.fc25 has been submitted as an update to Fedora 25. https://bodhi.fedoraproject.org/updates/FEDORA-2017-e111731937

--- Additional comment from Fedora Update System on 2017-03-07 02:07:41 EST ---

unboundid-ldapsdk-3.2.1-1.fc26 has been submitted as an update to Fedora 26. https://bodhi.fedoraproject.org/updates/FEDORA-2017-7324baefd0
Comment 4 Sandro Bonazzola 2018-03-28 11:17:02 EDT
Rebasing on 4.0.5
Comment 10 errata-xmlrpc 2018-05-15 13:31:17 EDT
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHEA-2018:1464

Note You need to log in before you can comment on or make changes to this bug.