Red Hat Bugzilla – Bug 768058
ipa-client: Requires client-side changes for server-side fixes (due to CVE-2011-3636) [rhel-5.7.z]
Last modified: 2011-12-20 03:16:08 EST
This bug has been copied from bug #752226 and has been proposed to be backported to 5.7 z-stream (EUS).
Rebased and applied patch from upstream.
Verified using ipa-client-2.0-14.el5_7.2 First installed client using ipa-client-2.0-14.el5_7.1, and got the error - Missing or invalid HTTP Referer, missing. Then upgraded to ipa-client-2.0-14.el5_7.2, and was able to install successfully. Since 5.7 doesn't have ipa-admintools, not verifying the error by running cmd: ipa user-show <user>
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHBA-2011-1841.html