{"id":"MGASA-2019-0411","summary":"Updated 389-ds-base packages fix security vulnerabilities","details":"he updated packages fix security vulnerabilities and a packaging problem:\n\nAn out-of-bounds memory read flaw was found in the way 389-ds-base handled\ncertain LDAP search filters, affecting all versions including 1.4.x. A\nremote, unauthenticated attacker could potentially use this flaw to make\nns-slapd crash via a specially crafted LDAP request, thus resulting in\ndenial of service. (CVE-2018-1054)\n\n389-ds-base before versions 1.3.8.5, 1.4.0.12 is vulnerable to a Cleartext\nStorage of Sensitive Information. By default, when the Replica and/or\nretroChangeLog plugins are enabled, 389-ds-base stores passwords in\nplaintext format in their respective changelog files. An attacker with\nsufficiently high privileges, such as root or Directory Manager, can\nquery these files in order to retrieve plaintext passwords.\n(CVE-2018-10871)\n\nIn 389-ds-base up to version 1.4.1.2, requests are handled by workers\nthreads. Each sockets will be waited by the worker for at most\n'ioblocktimeout' seconds. However this timeout applies only for un-\nencrypted requests. Connections using SSL/TLS are not taking this timeout\ninto account during reads, and may hang longer.An unauthenticated attacker\ncould repeatedly create hanging LDAP requests to hang all the workers,\nresulting in a Denial of Service. (CVE-2019-3883)\n\nA flaw was found in the 'deref' plugin of 389-ds-base where it could use\nthe 'search' permission to display attribute values. In some configurations,\nthis could allow an authenticated attacker to view private attributes, such\nas password hashes. (CVE-2019-14824)\n\nThere were conflicts between files from svrcore and 389-ds-base which\nprevented the installation of 389-ds (mga#25709)\n","modified":"2026-04-16T04:44:29.833326244Z","published":"2019-12-25T19:08:41Z","upstream":["CVE-2018-1054","CVE-2018-10871","CVE-2019-14824","CVE-2019-3883"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2019-0411.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=25824"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=25709"},{"type":"WEB","url":"http://lists.suse.com/pipermail/sle-security-updates/2019-August/005817.html"},{"type":"WEB","url":"https://directory.fedoraproject.org/docs/389ds/releases/release-1-4-0-31.html"}],"affected":[{"package":{"name":"389-ds-base","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/389-ds-base?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.4.0.26-1.1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2019-0411.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}