Описание
Linux-PAM before 1.0.4 does not enforce the minimum password age (MINDAYS) as specified in /etc/shadow, which allows local users to bypass intended security policy and change their passwords sooner than specified.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | not-affected | already has check |
| devel | not-affected | 1.1.0-2ubuntu1 |
| hardy | not-affected | already has check |
| intrepid | ignored | end of life, was needed |
| jaunty | ignored | end of life |
| karmic | not-affected | 1.1.0-2ubuntu1 |
| lucid | not-affected | 1.1.0-2ubuntu1 |
| maverick | not-affected | 1.1.0-2ubuntu1 |
| upstream | released | 1.0.4 |
Показывать по
Ссылки на источники
EPSS
4.6 Medium
CVSS2
Связанные уязвимости
Linux-PAM before 1.0.4 does not enforce the minimum password age (MINDAYS) as specified in /etc/shadow, which allows local users to bypass intended security policy and change their passwords sooner than specified.
Linux-PAM before 1.0.4 does not enforce the minimum password age (MINDAYS) as specified in /etc/shadow, which allows local users to bypass intended security policy and change their passwords sooner than specified.
Linux-PAM before 1.0.4 does not enforce the minimum password age (MIND ...
Linux-PAM before 1.0.4 does not enforce the minimum password age (MINDAYS) as specified in /etc/shadow, which allows local users to bypass intended security policy and change their passwords sooner than specified.
EPSS
4.6 Medium
CVSS2