Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Gentoo: GLSA 2023001 Important: OpenSSH Remote Code Execution

gentoo
Calendar Grey August 31, 2005
Scroller Gentoo
The Arch Linux advisory ALSA 202312-14 addresses a vulnerability in pam_unix that permits unauthorized remote login through authentication evasion.
pam_ldap contains a vulnerability that may allow a remote attacker to gain system access.

Summary

Gentoo Linux Security Advisory GLSA 200508-22 https://security.gentoo.org/ Severity: Normal Title: pam_ldap: Authentication bypass vulnerability Date: August 31, 2005 Bugs: #103659 ID: 200508-22

Synopsis ======= pam_ldap contains a vulnerability that may allow a remote attacker to gain system access.
Background ========= pam_ldap is a Pluggable Authentication Module which allows authentication against LDAP directories.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 sys-auth/pam_ldap < 180 >= 180
========== When a pam_ldap client attempts to authenticate against an LDAP server that omits the optional error value from the PasswordPolicyResponseV...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
important
Lowest
Low
Medium
High
Critical

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround