Jump to content

Security Advisory (MDKSA-2004:045): passwd


 Share

Recommended Posts

MandrakeSoft Security Advisory MDKSA-2004:045 : passwd

 

May 17th, 2004

Updated passwd packages fix vulnerabilities

 

Steve Grubb found some problems in the passwd program. Passwords given to passwd via stdin are one character shorter than they are supposed to be. He also discovered that pam may not have been sufficiently initialized to ensure safe and proper operation. A few small memory leaks have been fixed as well.

 

The updated packages are patched to correct these problems.

 

 

The released versions of Mandrake GNU/Linux affected are:

  • 9.1
  • 9.2
  • 9.2/AMD64
  • Multi Network Firewall 8.2
  • Corporate Server 2.1
  • 10.0

Full information about this advisory, including the updated packages, is available at:

www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:045

 

Posted automatically by aru (mdksec2mub v0.0.8)

Link to comment
Share on other sites

 Share

×
×
  • Create New...