The remote host is missing an update to openldap2.2 announced via advisory USN-384-1.
A security issue affects the following Ubuntu releases:
Ubuntu 5.10 Ubuntu 6.06 LTS Ubuntu 6.10
This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu.
Details follow:
Evgeny Legerov discovered that the OpenLDAP libraries did not correctly truncate authcid names. This situation would trigger an assert and abort the program using the libraries. A remote attacker could send specially crafted bind requests that would lead to an LDAP server denial of service.
Solution: The problem can be corrected by upgrading your system to the following package versions:
Ubuntu 5.10: libldap-2.2-7 2.2.26-3ubuntu0.2
Ubuntu 6.06 LTS: libldap-2.2-7 2.2.26-5ubuntu2.2
Ubuntu 6.10: libldap-2.2-7 2.2.26-5ubuntu3.1
In general, a standard system upgrade is sufficient to effect the necessary changes.