Описание
Security update for pam
This update for pam fixes the following issue:
Security issue fixed:
- CVE-2018-17953: Fixed IP address and subnet handling of pam_access.so that was not honoured correctly when a single host was specified (bsc#1115640).
This update was imported from the SUSE:SLE-15:Update update project.
Список пакетов
openSUSE Leap 15.0
pam-1.3.0-lp150.5.6.1
pam-32bit-1.3.0-lp150.5.6.1
pam-devel-1.3.0-lp150.5.6.1
pam-devel-32bit-1.3.0-lp150.5.6.1
pam-doc-1.3.0-lp150.5.6.1
Ссылки
- E-Mail link for openSUSE-SU-2018:4043-1
- SUSE Security Ratings
Описание
A incorrect variable in a SUSE specific patch for pam_access rule matching in PAM 1.3.0 in openSUSE Leap 15.0 and SUSE Linux Enterprise 15 could lead to pam_access rules not being applied (fail open).
Затронутые продукты
openSUSE Leap 15.0:pam-1.3.0-lp150.5.6.1
openSUSE Leap 15.0:pam-32bit-1.3.0-lp150.5.6.1
openSUSE Leap 15.0:pam-devel-1.3.0-lp150.5.6.1
openSUSE Leap 15.0:pam-devel-32bit-1.3.0-lp150.5.6.1
Ссылки
- CVE-2018-17953
- SUSE Bug 1115640