Alibaba Cloud Linux 2.1903 Security Advisory: ALINUX2-SA-2022:0012

Issued: 2022-02-23
Updated: 2022-02-23

Summary

389-ds-base security and bug fix update

Severity

Low

Description

Package updates are available for Alibaba Cloud Linux 2.1903 that fix the following vulnerabilities:

CVE-2021-4091:
A double-free was found in the way 389-ds-base handles virtual attributes context in persistent searches. An attacker could send a series of search requests, forcing the server to behave unexpectedly, and crash.

References

Updated Packages