[Pkg-openldap-devel] Bug#729367: Re: openldap: CVE-2013-4449

Ryan Tandy ryan at nardis.ca
Sun Apr 6 00:23:28 UTC 2014


On 22/02/14 08:10 AM, Hideki Yamane wrote:
>   I've taken the patch from RHEL for this issue, and can build it.
>   Upstream doesn't apply it yet, I'm not sure why, but it's worth to
>   check, IMO.

Upstream have applied the patch recently to their 2.4 and 2.5 branches.

http://www.openldap.org/devel/gitweb.cgi?p=openldap.git;a=commitdiff;h=924389d9dd9dbb6ffe5db6c0fc65ecfe6814a1af

Your patch still applies (besides the changelog) to 2.4.39-1 and builds
successfully.



More information about the Pkg-openldap-devel mailing list