Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2007:1037 - Security Advisory
Issued:
2007-11-08
Updated:
2007-11-08

RHSA-2007:1037 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openldap security and enhancement update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

Updated openldap packages that fix a security flaw are now available for
Red Hat Enterprise Linux 5.

This update has been rated as having important security impact by the Red
Hat Security Response Team.

Description

OpenLDAP is an open source suite of LDAP (Lightweight Directory Access
Protocol) applications and development tools.

A flaw was found in the way OpenLDAP's slapd daemon handled malformed
objectClasses LDAP attributes. A local or remote attacker could create an
LDAP request which could cause a denial of service by crashing slapd.
(CVE-2007-5707)

In addition, the following feature was added:

  • OpenLDAP client tools now have new option to configure their bind timeout.

All users are advised to upgrade to these updated openldap packages, which
contain a backported patch to correct this issue and provide this security
enhancement.

Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/FAQ_58_10188

Affected Products

  • Red Hat Enterprise Linux Server 5 x86_64
  • Red Hat Enterprise Linux Server 5 ia64
  • Red Hat Enterprise Linux Server 5 i386
  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 5.1 x86_64
  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 5.1 ia64
  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 5.1 i386
  • Red Hat Enterprise Linux Workstation 5 x86_64
  • Red Hat Enterprise Linux Workstation 5 i386
  • Red Hat Enterprise Linux Desktop 5 x86_64
  • Red Hat Enterprise Linux Desktop 5 i386
  • Red Hat Enterprise Linux for IBM z Systems 5 s390x
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 5.1 s390x
  • Red Hat Enterprise Linux for Power, big endian 5 ppc
  • Red Hat Enterprise Linux for Power, big endian - Extended Update Support 5.1 ppc
  • Red Hat Enterprise Linux Server from RHUI 5 x86_64
  • Red Hat Enterprise Linux Server from RHUI 5 i386

Fixes

  • BZ - 359851 - CVE-2007-5707 openldap slapd DoS via objectClasses attribute

CVEs

  • CVE-2007-5707

References

  • http://www.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 5

SRPM
openldap-2.3.27-8.el5_1.1.src.rpm SHA-256: 61586d4f21d87eecda6dde0984bff70c0602c410b9d453b4995bcf25246f4d18
x86_64
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
compat-openldap-2.3.27_2.2.29-8.el5_1.1.x86_64.rpm SHA-256: 6d7dc52a0f32a401c71d291dd6af350fa5125fbe27fc14a90f65fcf27456676a
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 49e4ea9fe04839cb1a720190b8d3feeab44dd8d91860393d99b9657e9fa1bd91
openldap-clients-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 4e2bf483f874f9fa0395e2d8b200ef948b8ace73c88321333ab2b1975d4537fb
openldap-devel-2.3.27-8.el5_1.1.i386.rpm SHA-256: fe9de7400b96a688aba6383d2445e9bbfb49443b03bb91a9ee8afcb67a653078
openldap-devel-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 83bcf269202735933078a6892f43e3c5efb81851ffd9736f2448eb6b86acefdd
openldap-servers-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 2fc7a7d2d7d5cb9b747fe430b1d37fb8241b2ead9507e1126840d7221fe07166
openldap-servers-sql-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: bdae00957ea1a6892c79fe5a52c13378b1e22a30421a06c1472d75d28b5d6583
ia64
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
compat-openldap-2.3.27_2.2.29-8.el5_1.1.ia64.rpm SHA-256: a105e589ad34958d3142b26d38d27e5b849e623f2cb4aceec3a3d24a569ede89
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-2.3.27-8.el5_1.1.ia64.rpm SHA-256: f5d03230c781eaca995861a6882f0b5daf46b665d71d644a491c38787c7814ff
openldap-clients-2.3.27-8.el5_1.1.ia64.rpm SHA-256: b205cb890db7ab4f17ba9c9b62d016ddaa63f6308e26dc3d66890a7e2aa0ee0c
openldap-devel-2.3.27-8.el5_1.1.ia64.rpm SHA-256: d31258148f3b88565dc918e673e4222a171bb94c79d15d0576ecf192fb325b06
openldap-servers-2.3.27-8.el5_1.1.ia64.rpm SHA-256: 86f0d5cf13fa9cd4292d87e9b6ea800b6c6299cd3b69e98289abac8fa1f6e1fd
openldap-servers-sql-2.3.27-8.el5_1.1.ia64.rpm SHA-256: 9d56f21a9174487a606f764bdca5fd6194a5fc6805247b49f131c075943e1598
i386
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-clients-2.3.27-8.el5_1.1.i386.rpm SHA-256: 8d71573cd5d06b794e4a861f49a350018cae4fcc9ddc4a93183c7f156cc18652
openldap-devel-2.3.27-8.el5_1.1.i386.rpm SHA-256: fe9de7400b96a688aba6383d2445e9bbfb49443b03bb91a9ee8afcb67a653078
openldap-servers-2.3.27-8.el5_1.1.i386.rpm SHA-256: 9c412e5ce17a4e8dba2d39340fc7ccb28925d38e73be4dbbf7be95ec10eb7a8a
openldap-servers-sql-2.3.27-8.el5_1.1.i386.rpm SHA-256: 623e3a209ec1333ba5ba18a94db3acabbd227d3af789124cab367294492a878a

Red Hat Enterprise Linux for x86_64 - Extended Update Support 5.1

SRPM
x86_64
ia64
i386

Red Hat Enterprise Linux Workstation 5

SRPM
openldap-2.3.27-8.el5_1.1.src.rpm SHA-256: 61586d4f21d87eecda6dde0984bff70c0602c410b9d453b4995bcf25246f4d18
x86_64
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
compat-openldap-2.3.27_2.2.29-8.el5_1.1.x86_64.rpm SHA-256: 6d7dc52a0f32a401c71d291dd6af350fa5125fbe27fc14a90f65fcf27456676a
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 49e4ea9fe04839cb1a720190b8d3feeab44dd8d91860393d99b9657e9fa1bd91
openldap-clients-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 4e2bf483f874f9fa0395e2d8b200ef948b8ace73c88321333ab2b1975d4537fb
openldap-devel-2.3.27-8.el5_1.1.i386.rpm SHA-256: fe9de7400b96a688aba6383d2445e9bbfb49443b03bb91a9ee8afcb67a653078
openldap-devel-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 83bcf269202735933078a6892f43e3c5efb81851ffd9736f2448eb6b86acefdd
openldap-servers-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 2fc7a7d2d7d5cb9b747fe430b1d37fb8241b2ead9507e1126840d7221fe07166
openldap-servers-sql-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: bdae00957ea1a6892c79fe5a52c13378b1e22a30421a06c1472d75d28b5d6583
i386
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-clients-2.3.27-8.el5_1.1.i386.rpm SHA-256: 8d71573cd5d06b794e4a861f49a350018cae4fcc9ddc4a93183c7f156cc18652
openldap-devel-2.3.27-8.el5_1.1.i386.rpm SHA-256: fe9de7400b96a688aba6383d2445e9bbfb49443b03bb91a9ee8afcb67a653078
openldap-servers-2.3.27-8.el5_1.1.i386.rpm SHA-256: 9c412e5ce17a4e8dba2d39340fc7ccb28925d38e73be4dbbf7be95ec10eb7a8a
openldap-servers-sql-2.3.27-8.el5_1.1.i386.rpm SHA-256: 623e3a209ec1333ba5ba18a94db3acabbd227d3af789124cab367294492a878a

Red Hat Enterprise Linux Desktop 5

SRPM
openldap-2.3.27-8.el5_1.1.src.rpm SHA-256: 61586d4f21d87eecda6dde0984bff70c0602c410b9d453b4995bcf25246f4d18
x86_64
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
compat-openldap-2.3.27_2.2.29-8.el5_1.1.x86_64.rpm SHA-256: 6d7dc52a0f32a401c71d291dd6af350fa5125fbe27fc14a90f65fcf27456676a
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 49e4ea9fe04839cb1a720190b8d3feeab44dd8d91860393d99b9657e9fa1bd91
openldap-clients-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 4e2bf483f874f9fa0395e2d8b200ef948b8ace73c88321333ab2b1975d4537fb
i386
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-clients-2.3.27-8.el5_1.1.i386.rpm SHA-256: 8d71573cd5d06b794e4a861f49a350018cae4fcc9ddc4a93183c7f156cc18652

Red Hat Enterprise Linux for IBM z Systems 5

SRPM
openldap-2.3.27-8.el5_1.1.src.rpm SHA-256: 61586d4f21d87eecda6dde0984bff70c0602c410b9d453b4995bcf25246f4d18
s390x
compat-openldap-2.3.27_2.2.29-8.el5_1.1.s390.rpm SHA-256: a7eeb6153fec093552ea461eb6ea178db5180c4c09706f8b05ce5d4339f2de0c
compat-openldap-2.3.27_2.2.29-8.el5_1.1.s390x.rpm SHA-256: 58ba499ee6ec03f5e413747ce4880732d9f29a94005f40ad98162816617c268a
openldap-2.3.27-8.el5_1.1.s390.rpm SHA-256: 369f1442690e50cbf965aa4e3a68fe552049ab1f2b7c73647c3be84afa7ccc7a
openldap-2.3.27-8.el5_1.1.s390x.rpm SHA-256: 2acc5ddf03f22661749b4ab33819b8b994863fdde31588133cf91bc68e46da28
openldap-clients-2.3.27-8.el5_1.1.s390x.rpm SHA-256: 916d771fae2fc52c0c3e74e6a7873514343cb53b50216566565905396d847146
openldap-devel-2.3.27-8.el5_1.1.s390.rpm SHA-256: f8ee2ad225dd5ccd58f0be726a2bcfbfcdf8183c33e345d6290ff4aa95fd861b
openldap-devel-2.3.27-8.el5_1.1.s390x.rpm SHA-256: 4b04df7b0e0607cf3ba650c8cf585b5958c582f9b26caf8a87a3743661c72f96
openldap-servers-2.3.27-8.el5_1.1.s390x.rpm SHA-256: 8086fd0db4f7b9dd7a694f9e5d49ab925a9b54a1d18ffe55c18ca06a648acdea
openldap-servers-sql-2.3.27-8.el5_1.1.s390x.rpm SHA-256: 5c17ca47e6ef765b2d671f40868417638e0bc046ada84318544f02bafb6ff8d6

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 5.1

SRPM
s390x

Red Hat Enterprise Linux for Power, big endian 5

SRPM
openldap-2.3.27-8.el5_1.1.src.rpm SHA-256: 61586d4f21d87eecda6dde0984bff70c0602c410b9d453b4995bcf25246f4d18
ppc
compat-openldap-2.3.27_2.2.29-8.el5_1.1.ppc.rpm SHA-256: c5d9a605a076ac25b70e57e91213a993f20d49426d95814b7f1a66db6e4a5284
compat-openldap-2.3.27_2.2.29-8.el5_1.1.ppc64.rpm SHA-256: d66869a0b01ffba248e2a3643d1da7e29920d3ae4c4875255fad735a41fd0599
openldap-2.3.27-8.el5_1.1.ppc.rpm SHA-256: e6f689e12bdf7f8683ac85f82e875d839166bc2509a4cbb8a85359105ab95454
openldap-2.3.27-8.el5_1.1.ppc64.rpm SHA-256: 2dffd57efb943032f43088ab808bbb0c334c19560061cd157f73313b91877aa1
openldap-clients-2.3.27-8.el5_1.1.ppc.rpm SHA-256: 42901ebd4f1bd1453fcf52c2b26f618c5d2a34c44a988fb3a3f542d8e8cbbd42
openldap-devel-2.3.27-8.el5_1.1.ppc.rpm SHA-256: add58d9c0510dae01b361f89d25f2468b4cde8e89a93b064e323a4fa71f13fc0
openldap-devel-2.3.27-8.el5_1.1.ppc64.rpm SHA-256: 9f485d590ee5590461a394e5823f0e7271f8569e7d15dae6f05022293db3e948
openldap-servers-2.3.27-8.el5_1.1.ppc.rpm SHA-256: 8cc3cb866650576f209cbafc7e6747f8b4207c46dea56e93c53453748c283dee
openldap-servers-sql-2.3.27-8.el5_1.1.ppc.rpm SHA-256: 78e7e589678862e60a8d218ea7e4334d663f5abf543f773d3236145aca1af4fe

Red Hat Enterprise Linux for Power, big endian - Extended Update Support 5.1

SRPM
ppc

Red Hat Enterprise Linux Server from RHUI 5

SRPM
openldap-2.3.27-8.el5_1.1.src.rpm SHA-256: 61586d4f21d87eecda6dde0984bff70c0602c410b9d453b4995bcf25246f4d18
x86_64
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
compat-openldap-2.3.27_2.2.29-8.el5_1.1.x86_64.rpm SHA-256: 6d7dc52a0f32a401c71d291dd6af350fa5125fbe27fc14a90f65fcf27456676a
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 49e4ea9fe04839cb1a720190b8d3feeab44dd8d91860393d99b9657e9fa1bd91
openldap-clients-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 4e2bf483f874f9fa0395e2d8b200ef948b8ace73c88321333ab2b1975d4537fb
openldap-devel-2.3.27-8.el5_1.1.i386.rpm SHA-256: fe9de7400b96a688aba6383d2445e9bbfb49443b03bb91a9ee8afcb67a653078
openldap-devel-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 83bcf269202735933078a6892f43e3c5efb81851ffd9736f2448eb6b86acefdd
openldap-servers-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: 2fc7a7d2d7d5cb9b747fe430b1d37fb8241b2ead9507e1126840d7221fe07166
openldap-servers-sql-2.3.27-8.el5_1.1.x86_64.rpm SHA-256: bdae00957ea1a6892c79fe5a52c13378b1e22a30421a06c1472d75d28b5d6583
i386
compat-openldap-2.3.27_2.2.29-8.el5_1.1.i386.rpm SHA-256: 82e449eb964c474754d83639cec35f9d4840ad6d11eaa6cf0dfe7b55e997634c
openldap-2.3.27-8.el5_1.1.i386.rpm SHA-256: e91fcd52cc8e436e4549937d141c9eff63fb42b18fb7bcada8a5f15fb644cb70
openldap-clients-2.3.27-8.el5_1.1.i386.rpm SHA-256: 8d71573cd5d06b794e4a861f49a350018cae4fcc9ddc4a93183c7f156cc18652
openldap-devel-2.3.27-8.el5_1.1.i386.rpm SHA-256: fe9de7400b96a688aba6383d2445e9bbfb49443b03bb91a9ee8afcb67a653078
openldap-servers-2.3.27-8.el5_1.1.i386.rpm SHA-256: 9c412e5ce17a4e8dba2d39340fc7ccb28925d38e73be4dbbf7be95ec10eb7a8a
openldap-servers-sql-2.3.27-8.el5_1.1.i386.rpm SHA-256: 623e3a209ec1333ba5ba18a94db3acabbd227d3af789124cab367294492a878a

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility