-
Tue Apr 03 2018 Matus Honek <mhonek@redhat.com> - 1.3.7.5-19
- Bump version to 1.3.7.5-19
- Resolves: Bug 1563107 - IPA server is not responding, all authentication and admin tests failed [rhel-7.5.z]
-
Mon Feb 12 2018 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5-18
- Bump version to 1.3.7.5-18
- Resolves: Bug 1539082 - Fix memory leak
-
Mon Feb 12 2018 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5.17
- Bump version to 1.3.7.5.17
- Resolves: Bug 1539082 - Child entry cenotaphs should not prevent the deletion of the parent
- Resolves: Bug 1540106 - CVE-2018-1054 - remote Denial of Service (DoS) via search filters in SetUnicodeStringFromUTF_8
- Resolves: Bug 1535538 - CVE-2017-15135 - Authentication bypass due to lack of size check in slapi_ct_memcmp
-
Tue Feb 06 2018 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5-16
- Bump version to 1.3.7.5-16
- Resolves: Bug 1542645 - Outgoing secure connection is failing with recent OpenLDAP
-
Tue Feb 06 2018 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5-15
- Bump version to 1.3.7.5-15
- Resolves: Bug 1533828 - Server allows to set nsds5replicaid=65535 in the existing replica entry
- Resolves: Bug 1535515 - local password policies should use the same defaults as the global policy
- Resolves: Bug 1541108 - Allow CRL handling to be configurable for outgoing connections
-
Fri Jan 26 2018 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5-14
- Bump version to 1.3.7.5-14
- Resolves: Bug 1519406 - New defects found in 389-ds-base-1.3.7.5-3.el7 (fix regression in -13)
-
Thu Jan 18 2018 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5-13
- Bump version to 1.3.7.5-13
- Resolves: Bug 1533828 - Server allows to set nsds5replicaid=65535 in the existing replica entry
- Resolves: Bug 1519406 - New defects found in 389-ds-base-1.3.7.5-3.el7
- Resolves: Bug 1534379 - CVE-2017-15134: Remote DoS via search filters in slapi_filter_sprintf in slapd/util.c
- Resolves: Bug 1533571 - memberof: schema violation error message is confusing as memberof will likely repair target entry
- Resolves: Bug 1535515 - local password policies should use the same defaults as the global policy
-
Fri Jan 12 2018 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5-12
- Bump version to 1.3.7.5-12
- Resolves: Bug 1459946 - GetEffectiveRights gives false-negative with ACIs containing targetfilter
- Resolves: Bug 1507194 - cleanallruv could break replication if anchor csn in ruv originated in deleted replica
- Resolves: Bug 1517788 - password policy: minimum token length fails when the token length is equal to attribute length
- Resolves: Bug 1518287 - heap-use-after-free in csn_as
- Resolves: Bug 1531153 - Indexing of internationalized matching rules is failing
- Resolves: Bug 1517383 - ns-slapd segfaults with ERR - connection_release_nolock_ext - conn=0 fd=0 Attempt to release connection that is not acquired
- Resolves: Bug 1523183 - search with CoS attribute is getting slower after modifying/adding CosTemplate
- Resolves: Bug 1457315 - cmocka tests are not executed during rpm build
- Resolves: Bug 1516309 - After cleanALLruv, replication is looping on keep alive DEL
-
Fri Dec 08 2017 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5-11
- Bump version to 1.3.7.5-11
- Resolves: Bug 1518069 - heap-buffer-overflow in ss_unescape
- Resolves: Bug 1516676 - gssapi authentication fails after upgrading 389-ds-base
- Resolves: Bug 1511885 - Automatically load /usr/lib/sysctl.d/70-dirsrv.conf after installing 389-ds-base
- Resolves: Bug 1517980 - stack-buffer-overflow in slapi_pblock_get
-
Thu Nov 16 2017 Mark Reynolds <mreynolds@redhat.com> - 1.3.7.5-10
- Bump version to 1.3.7.5-10
- Resolves: Bug 1464463 - Replication fails to start with CBCA (Certificate-Based Client Authentication) while FIPS mode is enabled.
- Resolves: Bug 1465383 - Segmentation fault in valueset_array_to_sorted_quick
- Resolves: Bug 1510865 - python-ldap is not a dependency of 389-ds-base
- Resolves: Bug 1513467 - IPA upgrade fails for latest ipa package
- Resolves: Bug 1192099 - IPA server replication broken, after DS stop-start, due to changelog reset
- Resolves: Bug 1445188 - Misleading error message - Incoming BER Element was 3 bytes
- Resolves: Bug 1498980 - heap corruption during import
- Resolves: Bug 1511462 - scope one searches give incorrect results
- Resolves: Bug 1514033 - opened connection are hanging, no longer poll