forked from pool/python-ldap
- Update to 3.4.5
* Security fixes:
+ CVE-2025-61911 (GHSA-r7r6-cc7p-4v5m): Enforce str input in
ldap.filter.escape_filter_chars with escape_mode=1; ensure proper
escaping. (bsc#1251912)
+ CVE-2025-61912 (GHSA-p34h-wq7j-h5v6): Correct NUL escaping in
ldap.dn.escape_dn_chars to \00 per RFC 4514. (bsc#1251913)
* Fixes:
+ ReconnectLDAPObject now properly reconnects on UNAVAILABLE,
CONNECT_ERROR and TIMEOUT exceptions (previously only SERVER_DOWN),
fixing reconnection issues especially during server restarts
+ Fixed syncrepl.py to use named constants instead of raw decimal values
for result types
+ Fixed error handling in SearchNoOpMixIn to prevent a undefined variable
error
- Switch to building with pip, wheel and the pyproject macros.
- Fix filename due to new setuptools.
This commit is contained in:
@@ -1,3 +1,24 @@
|
||||
-------------------------------------------------------------------
|
||||
Fri Oct 24 03:09:41 UTC 2025 - Steve Kowalik <steven.kowalik@suse.com>
|
||||
|
||||
- Update to 3.4.5:
|
||||
* Security fixes:
|
||||
+ CVE-2025-61911 (GHSA-r7r6-cc7p-4v5m): Enforce str input in
|
||||
ldap.filter.escape_filter_chars with escape_mode=1; ensure proper
|
||||
escaping. (bsc#1251912)
|
||||
+ CVE-2025-61912 (GHSA-p34h-wq7j-h5v6): Correct NUL escaping in
|
||||
ldap.dn.escape_dn_chars to \00 per RFC 4514. (bsc#1251913)
|
||||
* Fixes:
|
||||
+ ReconnectLDAPObject now properly reconnects on UNAVAILABLE,
|
||||
CONNECT_ERROR and TIMEOUT exceptions (previously only SERVER_DOWN),
|
||||
fixing reconnection issues especially during server restarts
|
||||
+ Fixed syncrepl.py to use named constants instead of raw decimal values
|
||||
for result types
|
||||
+ Fixed error handling in SearchNoOpMixIn to prevent a undefined variable
|
||||
error
|
||||
- Switch to building with pip, wheel and the pyproject macros.
|
||||
- Fix filename due to new setuptools.
|
||||
|
||||
-------------------------------------------------------------------
|
||||
Tue Aug 5 05:27:36 UTC 2025 - William Brown <william.brown@suse.com>
|
||||
|
||||
|
||||
Reference in New Issue
Block a user