Advisories Blog | G5 Cyber Security

Gentoo Linux Security Advisory 200612-19

Gentoo Linux Security Advisory GLSA 200612-19 – Steve Rigler discovered that pam_ldap does not correctly handle PasswordPolicyResponse control responses from an LDAP directory. This causes the pam_authenticate() function to always succeed, even if the previous authentication failed. Versions less than 183 are affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/53190/glsa-200612-19.txt

Source: https://packetstormsecurity.com/files/53190/Gentoo-Linux-Security-Advisory-200612-19.html

Exit mobile version