Bug 38876

Summary: OpenLDAP Update
Product: UCS Reporter: Stefan Gohmann <gohmann>
Component: LDAPAssignee: Felix Botner <botner>
Status: CLOSED FIXED QA Contact: Stefan Gohmann <gohmann>
Severity: enhancement    
Priority: P5 CC: requate
Version: UCS 4.1Keywords: interim-2
Target Milestone: UCS 4.1   
Hardware: Other   
OS: Linux   
URL: http://www.openldap.org/software/release/changes.html
What kind of report is it?: --- What type of bug is this?: ---
Who will be affected by this bug?: --- How will those affected feel about the bug?: ---
User Pain: Enterprise Customer affected?:
School Customer affected?: ISV affected?:
Waiting Support: Flags outvoted (downgraded) after PO Review:
Ticket number: Bug group (optional): Release Goal
Max CVSS v3 score:
Bug Depends on:    
Bug Blocks: 41558    

Description Stefan Gohmann univentionstaff 2015-07-10 07:49:59 CEST
OpenLDAP should be updated to the latest upstream version.
Comment 1 Felix Botner univentionstaff 2015-08-21 14:57:40 CEST
import 2.4.41+dfsg-1 from debian sid

patch changes:
 * removed 96-CVE-2015-1545.patch and 96-CVE-2015-1546.patch
   -> fixed in upstream
 * merged 22_nis_schema_macAddress.patch and 22_nis_schema_memberUid.patch
   to 21_nis_schema.patch
 * heimdal-multidev support in 12_k5pwd.patch 15_pwd_scheme_kinit.patch
 * converted patches to quilt style
 * removed all *DISBALED patches

built in 4.1
Comment 2 Felix Botner univentionstaff 2015-09-07 09:41:33 CEST
imported 2.4.42+dfsg-1 and built in 4.1-0
Comment 3 Arvid Requate univentionstaff 2015-09-15 12:19:40 CEST
We should import 2.4.42+dfsg-2, which fixes this issue:

https://security-tracker.debian.org/tracker/CVE-2015-6908
Comment 4 Felix Botner univentionstaff 2015-09-16 16:25:04 CEST
imported 2.4.42+dfsg-2 and built in 4.1-0

patches changed (debian/control has been restructured)
* 70_ppolicy_udm_lock.patch
* 60_ssl.patch
* 55_db5.1.patch
* 95-fix-ftbfs.patch
(svn diff -r r15282:r1528)
Comment 5 Stefan Gohmann univentionstaff 2015-10-26 06:51:24 CET
Installation: OK

Upgrade: OK

Changelog: OK

Code review patches: OK
Comment 6 Stefan Gohmann univentionstaff 2015-11-17 12:12:27 CET
UCS 4.1 has been released:
 https://docs.software-univention.de/release-notes-4.1-0-en.html
 https://docs.software-univention.de/release-notes-4.1-0-de.html

If this error occurs again, please use "Clone This Bug".