OpenLDAP
Up to top level
Build   Contrib   Development   Documentation   Historical   Incoming   Software Bugs   Software Enhancements   Web  

Logged in as guest

Viewing Software Bugs/8843
Full headers

From: quanah@openldap.org
Subject: null modlist with MMR > 2 can cause segv
Compose comment
Download message
State:
0 replies:
0 followups:

Major security issue: yes  no

Notes:

Notification:


Date: Wed, 02 May 2018 15:49:31 +0000
From: quanah@openldap.org
To: openldap-its@OpenLDAP.org
Subject: null modlist with MMR > 2 can cause segv
Full_Name: Quanah Gibson-Mount
Version: 2.4.46
OS: Linux
URL: ftp://ftp.openldap.org/incoming/
Submission from: (NULL) (47.208.148.239)


There is a race condition with MMR >2 that can cause slapd to segv, due to
the
op->modlist being set to NULL for a change that's already been processed.

If the target entry is already newer than the mod, and we then look in the logDB
to see what was changed, and the newer mod is a delete(attr) then any other
changes to that attr are dropped from the modlist, which can result in the
modlist being NULL
Up to top level
Build   Contrib   Development   Documentation   Historical   Incoming   Software Bugs   Software Enhancements   Web  

Logged in as guest


The OpenLDAP Issue Tracking System uses a hacked version of JitterBug

______________
© Copyright 2013, OpenLDAP Foundation, info@OpenLDAP.org