Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Fedora 22 FEDORA-2015-10830 Moderate: Pam DoS Security Issue

fedora
Calendar Grey June 30, 2015
Scroller Fedora
Fedora 22 security patch resolves a subtle Denial of Service vulnerability associated with extended password processing. Ensure your system's security with this update.
Update fixing a minor security issue CVE-2015-3238.

Summary

PAM (Pluggable Authentication Modules) is a system security tool that

allows system administrators to set authentication policy without

having to recompile programs that handle authentication.

Update Information:

Update fixing a minor security issue CVE-2015-3238.

Change Log

* Fri Jun 26 2015 Tomáš Mráz 1.1.8-19 - fix CVE-2015-3238 - minor security issue when handling long passwords

References


[ 1 ] Bug #1228571 - CVE-2015-3238 pam: DoS/user enumeration due to blocking pipe in pam_unix module https://bugzilla.redhat.com/show_bug.cgi?id=1228571

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update pam' at the command line. For more information, refer to "Managing Software with yum", available at .

Name: pam
Product: Fedora 22
Version: 1.1.8
Release: 19.fc22
Summary: An extensible library which provides authentication for applications

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.