[SECURITY] Fedora 11 Update: phpldapadmin-1.2.0.4-1.fc11

updates at fedoraproject.org updates at fedoraproject.org
Thu Dec 24 20:35:21 UTC 2009


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2009-13598
2009-12-24 20:16:12
--------------------------------------------------------------------------------

Name        : phpldapadmin
Product     : Fedora 11
Version     : 1.2.0.4
Release     : 1.fc11
URL         : http://phpldapadmin.sourceforge.net
Summary     : Web-based tool for managing LDAP servers
Description :
PhpLDAPadmin is a web-based LDAP client.
It provides easy, anywhere-accessible, multi-language administration
for your LDAP server. Its hierarchical tree-viewer and advanced search
functionality make it intuitive to browse and administer your LDAP directory.

Since it is a web application, this LDAP browser works on many platforms,
making your LDAP server easily manageable from any location.

PhpLDAPadmin is the perfect LDAP browser for the LDAP professional
and novice alike. Its user base consists mostly of LDAP administration
professionals.

Edit /etc/phpldapadmin/config.php to change default (localhost) LDAP server
location and other things. Edit /etc/httpd/conf.d/phpldapadmin.conf to allow
access by remote web-clients.

--------------------------------------------------------------------------------
Update Information:

Upgrade to 1.2.0.4    A vulnerability has been discovered on phpLDAPadmin
version 1.1.x, which can be exploited by malicious people to disclose sensitive
information. See http://secunia.com/advisories/37848/    This update upgrades
phpldapadmin to the latest version 1.2.0.4, which is not affected.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 23 2009 Dmitry Butskoy <Dmitry at Butskoy.name> - 1.2.0.4-1
- Upgrade to 1.2.0.4 . Fixes #549559
- Allow local IPv6 address by default
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #549559 - phpldapadmin: local file inclusion vulnerability
        https://bugzilla.redhat.com/show_bug.cgi?id=549559
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update phpldapadmin' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------




More information about the package-announce mailing list