Bugzilla will be upgraded to version 5.0 on a still to be determined date in the near future. The original upgrade date has been delayed.
Bug 1626079 - (CVE-2018-14638) CVE-2018-14638 389-ds-base: Crash in delete_passwdPolicy when persistent search connections are terminated unexpectedly
CVE-2018-14638 389-ds-base: Crash in delete_passwdPolicy when persistent sear...
Status: CLOSED ERRATA
Product: Security Response
Classification: Other
Component: vulnerability (Show other bugs)
unspecified
All Linux
medium Severity medium
: ---
: ---
Assigned To: Red Hat Product Security
impact=moderate,public=20180830,repor...
: Security
Depends On: 1624420 1637870 1623949 1628677
Blocks: 1626081
  Show dependency treegraph
 
Reported: 2018-09-06 10:16 EDT by Pedro Sampaio
Modified: 2018-10-10 05:25 EDT (History)
9 users (show)

See Also:
Fixed In Version: 389-ds-base 1.4.0.17
Doc Type: If docs needed, set a value
Doc Text:
A double-free of a password policy structure was found in the way slapd was handling certain errors during persistent search. A unauthenticated attacker could use this flaw to crash Directory Server.
Story Points: ---
Clone Of:
Environment:
Last Closed: 2018-09-27 07:15:02 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2018:2757 None None None 2018-09-25 15:06 EDT

  None (edit)
Description Pedro Sampaio 2018-09-06 10:16:39 EDT
A flaw was found in 389-ds-base. The process ns-slapd crashes in delete_passwdPolicy function when persistent search connections are terminated unexpectedly leading to remote denial of service.

References:

https://bugzilla.redhat.com/show_bug.cgi?id=1623949
Comment 2 Cedric Buissart 2018-09-14 10:16:13 EDT
Upstream fix: 
https://pagure.io/389-ds-base/c/78fc627accacfa4061ce48977e22301f81ea8d73
Comment 3 Cedric Buissart 2018-09-14 10:39:36 EDT
Acknowledgments:

Name: Viktor Ashirov (Red Hat)
Comment 4 errata-xmlrpc 2018-09-25 15:06:01 EDT
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7

Via RHSA-2018:2757 https://access.redhat.com/errata/RHSA-2018:2757
Comment 5 Cedric Buissart 2018-10-10 04:58:41 EDT
Created 389-ds-base tracking bugs for this issue:

Affects: fedora-all [bug 1637870]

Note You need to log in before you can comment on or make changes to this bug.