Release | Version |
---|---|
stretch | 1.9.7-3+deb9u2 |
stretch (security) | 1.9.7-3+deb9u4 |
buster | 2.0.2+ds-7+deb10u5 |
bullseye | 2.0.10+ds-1 |
sid | 2.0.10+ds-2 |
Bug | stretch | buster | bullseye | sid | Description |
---|---|---|---|---|---|
CVE-2020-16093 | vulnerable (no DSA) | vulnerable (no DSA) | fixed | fixed | |
CVE-2019-19791 | vulnerable (no DSA) | fixed | fixed | fixed | Apache access rules and SOAP/REST endpoints issue |
CVE-2019-15941 | vulnerable (no DSA, ignored) | fixed | fixed | fixed | OpenID Connect Issuer in LemonLDAP::NG 2.x through 2.0.5 may allow an ... |
Bug | Description |
---|---|
CVE-2020-24660 | An issue was discovered in LemonLDAP::NG through 2.0.8, when NGINX is ... |
CVE-2019-13031 | LemonLDAP::NG before 1.9.20 has an XML External Entity (XXE) issue whe ... |
CVE-2019-12046 | LemonLDAP::NG -2.0.3 has Incorrect Access Control. ... |
CVE-2012-6426 | LemonLDAP::NG before 1.2.3 does not use the signature-verification cap ... |
DSA / DLA | Description |
---|---|
DSA-4762-1 | lemonldap-ng - security update |
DLA-2367-1 | lemonldap-ng - security update |
DSA-4533-1 | lemonldap-ng - security update |
DLA-1844-1 | lemonldap-ng - security update |
DLA-1790-1 | lemonldap-ng - security update |
DSA-4446-1 | lemonldap-ng - security update |