Resource management error in OpenLDAP - CVE-2020-36226
Published: January 26, 2021 / Updated: February 6, 2021
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper management of internal resources within the application leading to a memch->bv_len miscalculation during saslAuthzTo processing. A remote attacker can send specially crafted request to the slapd and perform a denial of service (DoS) attack.
Affected software
Amazon Linux AMI
SUSE CaaS Platform
SUSE Manager Proxy
SUSE Manager Retail Branch Server
SUSE Manager Server
SUSE Enterprise Storage
SUSE OpenStack Cloud
HPE Helion Openstack
SUSE OpenStack Cloud Crowbar
macOS
SUSE Linux Enterprise Server
SUSE Linux Enterprise Point of Sale
SUSE Linux Enterprise Debuginfo
SUSE Linux Enterprise Module for Legacy Software
SUSE Linux Enterprise Server for SAP
SUSE Linux Enterprise Software Development Kit
Ubuntu
SUSE Linux Enterprise High Performance Computing
SUSE Linux Enterprise Module for Basesystem
SUSE Linux Enterprise Module for Development Tools
openEuler
openldap (Debian package)
openldap2-ppolicy-check-password-debuginfo
openldap2-ppolicy-check-password
compat-libldap-2_3-0
compat-libldap-2_3-0-debuginfo
openldap2-client-openssl1-debuginfo
openldap2-debugsource
openldap2-debuginfo
openldap2-client-debugsource
openldap2-client-debuginfo
libldap-openssl1-2_4-2-x86
libldap-openssl1-2_4-2-32bit
openldap2-openssl1
openldap2-client-openssl1
libldap-openssl1-2_4-2
libldap-2_4-2-32bit
openldap2-client
openldap2-back-meta
openldap2
libldap-2_4-2
openldap2-client-openssl1-debugsource
openldap (Ubuntu package)
openldap
openldap2-back-perl-debuginfo
openldap2-back-perl
openldap2-devel
openldap2-devel-static
openldap2-back-meta-debuginfo
libldap-2_4-2-debuginfo
openldap2-doc
libldap-2_4-2-debuginfo-32bit
slapd (Ubuntu package)
libldap-data
libldap-2_4-2-32bit-debuginfo
openldap2-devel-32bit
openldap-help
openldap-devel
openldap-servers
openldap-debugsource
openldap-debuginfo
openldap-clients
Splunk Enterprise
Dell EMC Unity VSA Operating Environment (OE)
Dell EMC Unity Operating Environment (OE)
Dell EMC Unity XT Operating Environment (OE)
Dell EMC VxRail Appliance
How to mitigate CVE-2020-36226
openldap (Debian package) - update to 2.4.47+dfsg-3+deb10u5
Splunk Enterprise - addressed in versions 9.1.6, 9.2.3, 9.3.1
macOS - addressed in versions 10.14.6 18G9216, 10.15.7 19H1217, 11.4 20F71
openldap2-ppolicy-check-password-debuginfo - addressed in versions 1.2-9.48.1, 1.2-18.83.1
openldap2-ppolicy-check-password - addressed in versions 1.2-9.48.1, 1.2-18.83.1
compat-libldap-2_3-0 - addressed in versions 2.3.37-2.74.26.1, 2.3.37-39.1
compat-libldap-2_3-0-debuginfo - update to 2.3.37-39.1
openldap2-client-openssl1-debuginfo - update to 2.4.26-0.74.26.1
openldap2-debugsource - addressed in versions 2.4.26-0.74.26.1, 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-debuginfo - addressed in versions 2.4.26-0.74.26.1, 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-client-debugsource - update to 2.4.26-0.74.26.1
openldap2-client-debuginfo - addressed in versions 2.4.26-0.74.26.1, 2.4.41-18.83.1, 2.4.46-9.48.1
libldap-openssl1-2_4-2-x86 - update to 2.4.26-0.74.26.1
libldap-openssl1-2_4-2-32bit - update to 2.4.26-0.74.26.1
openldap2-openssl1 - update to 2.4.26-0.74.26.1
openldap2-client-openssl1 - update to 2.4.26-0.74.26.1
libldap-openssl1-2_4-2 - update to 2.4.26-0.74.26.1
libldap-2_4-2-32bit - addressed in versions 2.4.26-0.74.26.1, 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-client - addressed in versions 2.4.26-0.74.26.1, 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-back-meta - addressed in versions 2.4.26-0.74.26.1, 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2 - addressed in versions 2.4.26-0.74.26.1, 2.4.41-18.83.1, 2.4.46-9.48.1
libldap-2_4-2 - addressed in versions 2.4.26-0.74.26.1, 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-client-openssl1-debugsource - update to 2.4.26-0.74.26.1
openldap (Ubuntu package) - update to 2.4.31-1+nmu2ubuntu8.5+esm7
openldap - update to 2.4.40-16.36
openldap2-back-perl-debuginfo - addressed in versions 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-back-perl - addressed in versions 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-devel - addressed in versions 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-devel-static - addressed in versions 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-back-meta-debuginfo - addressed in versions 2.4.41-18.83.1, 2.4.46-9.48.1
libldap-2_4-2-debuginfo - addressed in versions 2.4.41-18.83.1, 2.4.46-9.48.1
openldap2-doc - update to 2.4.41-18.83.1
libldap-2_4-2-debuginfo-32bit - update to 2.4.41-18.83.1
slapd (Ubuntu package) - addressed in versions 2.4.42+dfsg-2ubuntu3.12, 2.4.45+dfsg-1ubuntu1.9, 2.4.49+dfsg-2ubuntu1.6, 2.4.53+dfsg-1ubuntu1.3
libldap-data - update to 2.4.46-9.48.1
libldap-2_4-2-32bit-debuginfo - update to 2.4.46-9.48.1
openldap2-devel-32bit - update to 2.4.46-9.48.1
openldap-help - update to 2.4.50-3
openldap-devel - update to 2.4.50-3
openldap - update to 2.4.50-3
openldap-servers - update to 2.4.50-3
openldap-debugsource - update to 2.4.50-3
openldap-debuginfo - update to 2.4.50-3
openldap-clients - update to 2.4.50-3
Dell EMC Unity VSA Operating Environment (OE) - update to 5.1.2.0.5.007
Dell EMC Unity Operating Environment (OE) - update to 5.1.2.0.5.007
Dell EMC Unity XT Operating Environment (OE) - update to 5.1.2.0.5.007
Dell EMC VxRail Appliance - update to 7.0.240
External References
- https://bugs.openldap.org/show_bug.cgi?id=9413
- https://git.openldap.org/openldap/openldap/-/commit/554dff1927176579d652f2fe60c90e9abbad4c65
- https://git.openldap.org/openldap/openldap/-/commit/5a2017d4e61a6ddc4dcb4415028e0d08eb6bca26
- https://git.openldap.org/openldap/openldap/-/commit/c0b61a9486508e5202aa2e0cfb68c9813731b439
- https://git.openldap.org/openldap/openldap/-/commit/d169e7958a3e0dc70f59c8374bf8a59833b7bdd8
- https://git.openldap.org/openldap/openldap/-/tags/OPENLDAP_REL_ENG_2_4_57
- https://lists.debian.org/debian-lts-announce/2021/02/msg00005.html
- https://www.debian.org/security/2021/dsa-4845
Related Security Bulletins
- Multiple vulnerabilities in OpenLDAP
- Debian update for openldap
- Multiple vulnerabilities in Apple macOS Big Sur
- Multiple vulnerabilities in Apple macOS Mojave
- Multiple vulnerabilities in Apple macOS Catalina
- Multiple vulnerabilities in Dell EMC VxRail Appliance
- Multiple vulnerabilities in Dell EMC Unity
- SUSE update for openldap2
- Ubuntu update for openldap
- SUSE update for openldap2
- SUSE update for openldap2
- SUSE update for openldap2
- Amazon Linux AMI update for openldap
- openEuler update for openldap
- Splunk Enterprise update for third-party components
- Ubuntu update for openldap