Ubuntu 8.04 LTS / 9.10 / 10.04 LTS / 10.10 : openldap, openldap2.3 vulnerabilities (USN-1100-1)

Ubuntu Security Notice (C) 2011-2014 Canonical, Inc. / NASL script (C) 2011-2014 Tenable Network Security, Inc.


Synopsis :

The remote Ubuntu host is missing one or more security-related patches.

Description :

It was discovered that OpenLDAP did not properly check forwarded
authentication failures when using a slave server and chain overlay.
If OpenLDAP were configured in this manner, an attacker could bypass
authentication checks by sending an invalid password to a slave
server. (CVE-2011-1024)

It was discovered that OpenLDAP did not properly perform
authentication checks to the rootdn when using the back-ndb backend.
An attacker could exploit this to access the directory by sending an
arbitrary password. Ubuntu does not ship OpenLDAP with back-ndb
support by default. This issue did not affect Ubuntu 8.04 LTS.
(CVE-2011-1025)

It was discovered that OpenLDAP did not properly validate modrdn
requests. An unauthenticated remote user could use this to cause a
denial of service via application crash. (CVE-2011-1081).

Solution :

Update the affected packages.

Risk factor :

Medium / CVSS Base Score : 6.8
(CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P)
CVSS Temporal Score : 5.9
(CVSS2#E:ND/RL:OF/RC:C)
Public Exploit Available : true

Family: Ubuntu Local Security Checks

Nessus Plugin ID: 53257 ()

Bugtraq ID: 46363
46831

CVE ID: CVE-2011-1024
CVE-2011-1025
CVE-2011-1081