A vulnerability has been identified in Mandriva, which could be exploited by attackers to gain knowledge of sensitive information [...]
Solution
Upgrade the affected packages :
Mandriva Linux 2007.0:
734883fd4974f083ac6005a56438754b 2007.0/i586/nss_ldap-250-1.1mdv2007.0.i586.rpm
5f11443bb851c8c650c2aa1fa89743bd 2007.0/SRPMS/nss_ldap-250-1.1mdv2007.0.src.rpm
Mandriva Linux 2007.0/X86_64:
cdcf474742cdbeeb2d8c479a17270195 2007.0/x86_64/nss_ldap-250-1.1mdv2007.0.x86_64.rpm
5f11443bb851c8c650c2aa1fa89743bd 2007.0/SRPMS/nss_ldap-250-1.1mdv2007.0.src.rpm
Corporate 4.0:
f862188b3f2f11aa03f656dc29bee938 corporate/4.0/i586/nss_ldap-239-3.2.20060mlcs4.i586.rpm
735c052491e2d3943be54bc93cc6fb29 corporate/4.0/SRPMS/nss_ldap-239-3.2.20060mlcs4.src.rpm
Corporate 4.0/X86_64:
01bc19f756541e2a34943255f75a7ca4 corporate/4.0/x86_64/nss_ldap-239-3.2.20060mlcs4.x86_64.rpm
735c052491e2d3943be54bc93cc6fb29 corporate/4.0/SRPMS/nss_ldap-239-3.2.20060mlcs4.src.rpm
ChangeLog
2008-02-26 : Initial release
Vulnerability Management
Subscribe to FrSIRT VNS and receive real-time e-mail and SMS alerts when new vulnerabilities, exploits, or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form or by email to updates@frsirt.com.