/[advisories]/16212.adv
ViewVC logotype

Contents of /16212.adv

Parent Directory Parent Directory | Revision Log Revision Log


Revision 3182 - (show annotations) (download)
Thu Jul 9 07:56:53 2015 UTC (8 years, 9 months ago) by tmb
File size: 628 byte(s)
fix up duplicated mitre cve links
1 type: security
2 subject: Updated pam package fixes security vulnerability
3 CVE:
4 - CVE-2015-3238
5 src:
6 4:
7 core:
8 - pam-1.1.8-7.2.mga4
9 5:
10 core:
11 - pam-1.1.8-10.1.mga5
12 description: |
13 If SELinux is enabled, the _unix_run_helper_binary function in Linux-PAM
14 1.1.8 and earlier hangs indefinitely when verifying a password of 65536
15 characters, which allows attackers to conduct username enumeration and
16 denial of service attacks (CVE-2015-3238).
17 references:
18 - https://bugs.mageia.org/show_bug.cgi?id=16212
19 - https://lists.fedoraproject.org/pipermail/package-announce/2015-June/161249.html
20 ID: MGASA-2015-0266

  ViewVC Help
Powered by ViewVC 1.1.30