[ubuntu/xenial-updates] openldap 2.4.42+dfsg-2ubuntu3.10 (Accepted)

2020-11-09 Thread Ubuntu Archive Robot
openldap (2.4.42+dfsg-2ubuntu3.10) xenial-security; urgency=medium

  * SECURITY UPDATE: DoS via NULL pointer dereference
- debian/patches/CVE-2020-25692.patch: skip normalization if there's no
  equality rule in servers/slapd/modrdn.c.
- CVE-2020-25692

Date: 2020-11-04 19:57:15.146579+00:00
Changed-By: Marc Deslauriers 
Signed-By: Ubuntu Archive Robot 

https://launchpad.net/ubuntu/+source/openldap/2.4.42+dfsg-2ubuntu3.10
Sorry, changesfile not available.-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes


[ubuntu/xenial-updates] pacemaker 1.1.14-2ubuntu1.9 (Accepted)

2020-11-09 Thread Ubuntu Archive Robot
pacemaker (1.1.14-2ubuntu1.9) xenial-security; urgency=medium

  * SECURITY UPDATE: ACL restrictions bypass
- debian/patches/CVE-2020-25654-*.patch: restrict IPC connections.
- CVE-2020-25654

Date: 2020-10-29 14:20:15.891677+00:00
Changed-By: Marc Deslauriers 
Signed-By: Ubuntu Archive Robot 

https://launchpad.net/ubuntu/+source/pacemaker/1.1.14-2ubuntu1.9
Sorry, changesfile not available.-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes


[ubuntu/xenial-security] pacemaker 1.1.14-2ubuntu1.9 (Accepted)

2020-11-09 Thread Marc Deslauriers
pacemaker (1.1.14-2ubuntu1.9) xenial-security; urgency=medium

  * SECURITY UPDATE: ACL restrictions bypass
- debian/patches/CVE-2020-25654-*.patch: restrict IPC connections.
- CVE-2020-25654

pacemaker (1.1.14-2ubuntu1.8) xenial; urgency=medium

  * d/p/lp1877280/0001-Fix-attrd-crash-on-exit-if-initialization-fails.patch,
d/p/lp1877280/0002-Fix-attrd-ipc-Prevent-possible-segfault-on-exit.patch:
- avoid segfault on exit (LP: #1877280)

pacemaker (1.1.14-2ubuntu1.7) xenial; urgency=medium

  [ Victor Tapia ]
  * 
d/p/lp1871166/0001-Fix-libservices-prevent-use-after-free-when-freeing-.patch,

d/p/lp1871166/0002-Fix-libservices-ensure-completed-ops-aren-t-on-block.patch,

d/p/lp1871166/0003-Refactor-libservices-handle-in-flight-case-first-whe.patch,

d/p/lp1871166/0004-Fix-libservices-properly-cancel-in-flight-systemd-up.patch,

d/p/lp1871166/0005-Fix-libservices-properly-detect-in-flight-systemd-up.patch:
- prevent use-after-free segfault (LP: #1871166)

Date: 2020-10-29 14:20:15.891677+00:00
Changed-By: Marc Deslauriers 
https://launchpad.net/ubuntu/+source/pacemaker/1.1.14-2ubuntu1.9
Sorry, changesfile not available.-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes


[ubuntu/xenial-security] openldap 2.4.42+dfsg-2ubuntu3.10 (Accepted)

2020-11-09 Thread Marc Deslauriers
openldap (2.4.42+dfsg-2ubuntu3.10) xenial-security; urgency=medium

  * SECURITY UPDATE: DoS via NULL pointer dereference
- debian/patches/CVE-2020-25692.patch: skip normalization if there's no
  equality rule in servers/slapd/modrdn.c.
- CVE-2020-25692

openldap (2.4.42+dfsg-2ubuntu3.9) xenial; urgency=medium

  [ Andreas Hasenack ]
  * d/p/ITS-9171-Insert-callback-in-the-right-place.patch: Import upstream
patch to fix slapd crashing in certain configurations when a client
attempts a login to a locked account. (LP: #1866303)

  [ Sergio Durigan Junior]
  * d/apparmor-profile: Update apparmor profile to grant access to
the saslauthd socket, so that SASL authentication works.  (LP: #1557157)

Date: 2020-11-04 19:57:15.146579+00:00
Changed-By: Marc Deslauriers 
https://launchpad.net/ubuntu/+source/openldap/2.4.42+dfsg-2ubuntu3.10
Sorry, changesfile not available.-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes