Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2018:4043-1

Опубликовано: 07 дек. 2018
Источник: suse-cvrf

Описание

Security update for pam

This update for pam fixes the following issue:

Security issue fixed:

  • CVE-2018-17953: Fixed IP address and subnet handling of pam_access.so that was not honoured correctly when a single host was specified (bsc#1115640).

This update was imported from the SUSE:SLE-15:Update update project.

Список пакетов

openSUSE Leap 15.0
pam-1.3.0-lp150.5.6.1
pam-32bit-1.3.0-lp150.5.6.1
pam-devel-1.3.0-lp150.5.6.1
pam-devel-32bit-1.3.0-lp150.5.6.1
pam-doc-1.3.0-lp150.5.6.1

Описание

A incorrect variable in a SUSE specific patch for pam_access rule matching in PAM 1.3.0 in openSUSE Leap 15.0 and SUSE Linux Enterprise 15 could lead to pam_access rules not being applied (fail open).


Затронутые продукты
openSUSE Leap 15.0:pam-1.3.0-lp150.5.6.1
openSUSE Leap 15.0:pam-32bit-1.3.0-lp150.5.6.1
openSUSE Leap 15.0:pam-devel-1.3.0-lp150.5.6.1
openSUSE Leap 15.0:pam-devel-32bit-1.3.0-lp150.5.6.1

Ссылки