VDB
RHSA-2002:175
RHSA-2002:175
PUBLISHED
Updated nss_ldap packages are now available for Red Hat Linux 6.2, 7, 7.1, 7.2, and 7.3. These updates fix a potential buffer overflow which can occur when nss_ldap is set to configure itself using information stored in DNS, a format string bug in logging functions used in pam_ldap, and to properly handle truncated DNS responses.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Linux 7.3 | ||
| Red Hat Linux 7.1 | ||
| Red Hat Linux 7.2 | ||
| Red Hat Linux 7.0 | ||
| Red Hat Linux 6.2 |
Timeline
- Oct 4, 2002 CVE Published
- Nov 21, 2025 CVE Updated
- Apr 7, 2026 Distribution Patch
- Apr 7, 2026 Security Advisory
- Apr 7, 2026 Distribution Patch
- Aug 7, 2026 Security Advisory
- Aug 7, 2026 Security Advisory
- Aug 7, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2002:175 advisory
- http://www.padl.com/Articles/PotentialBufferOverflowin.html url
- http://www.kb.cert.org/vuls/id/738331 url
- http://www.padl.com/OSS/pam_ldap.html url
- http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0053.html url
- https://security.access.redhat.com/data/csaf/v2/advisories/2002/rhsa-2002_175.json advisory