{"id":"MGASA-2015-0183","summary":"Updated 389-ds-base packages fix CVE-2015-1854","details":"Updated 389-ds-base packages fix security vulnerability:\n\nA flaw was found in the way Red Hat Directory Server performed\nauthorization of modrdn operations. An unauthenticated attacker able to\nissue an ldapmodrdn call to the directory server could use this flaw to\nperform unauthorized modifications of entries in the directory server\n(CVE-2015-1854).\n","modified":"2026-04-16T06:22:49.358837868Z","published":"2015-05-03T00:19:16Z","upstream":["CVE-2015-1854"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2015-0183.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=15796"},{"type":"WEB","url":"https://rhn.redhat.com/errata/RHSA-2015-0895.html"}],"affected":[{"package":{"name":"389-ds-base","ecosystem":"Mageia:4","purl":"pkg:rpm/mageia/389-ds-base?arch=source&distro=mageia-4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.3.3.10-1.mga4"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2015-0183.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}