https://bugs.openldap.org/show_bug.cgi?id=10505
Issue ID: 10505 Summary: lloadd doesn't fully validate incoming msgids Product: OpenLDAP Version: unspecified Hardware: All OS: All Status: UNCONFIRMED Keywords: needs_review Severity: normal Priority: --- Component: lloadd Assignee: bugs@openldap.org Reporter: ondra@mistotebe.net Target Milestone: ---
This can allow rogue clients reach an assert(0) with the right timing.
https://bugs.openldap.org/show_bug.cgi?id=10505
Ondřej Kuzník ondra@mistotebe.net changed:
What |Removed |Added ---------------------------------------------------------------------------- Status|UNCONFIRMED |IN_PROGRESS Ever confirmed|0 |1
--- Comment #1 from Ondřej Kuzník ondra@mistotebe.net --- https://git.openldap.org/openldap/openldap/-/merge_requests/879
https://bugs.openldap.org/show_bug.cgi?id=10505
Quanah Gibson-Mount quanah@openldap.org changed:
What |Removed |Added ---------------------------------------------------------------------------- Assignee|bugs@openldap.org |ondra@mistotebe.net Keywords|needs_review | Target Milestone|--- |2.6.14
https://bugs.openldap.org/show_bug.cgi?id=10505
Quanah Gibson-Mount quanah@openldap.org changed:
What |Removed |Added ---------------------------------------------------------------------------- Status|IN_PROGRESS |RESOLVED Resolution|--- |TEST
--- Comment #2 from Quanah Gibson-Mount quanah@openldap.org --- head:
• aa4e389e by Ondřej Kuzník at 2026-05-19T17:57:46+00:00 ITS#10505 lloadd: tighten msgid checking
RE27:
• b35d08a6 by Ondřej Kuzník at 2026-05-19T22:36:43+00:00 ITS#10505 lloadd: tighten msgid checking
RE26:
• ae610302 by Ondřej Kuzník at 2026-05-19T23:01:12+00:00 ITS#10505 lloadd: tighten msgid checking