Description
The PAM implementation in /bin/login of the util-linux package before 2.11 causes a password entry to be rewritten across multiple PAM calls, which could provide the credentials of one user to a different user, when used in certain PAM modules such as pam_limits.
Affected products
- andries_brouwer / util-linux2.10s – 2.10s
- andries_brouwer / util-linux2.11f – 2.11f
- andries_brouwer / util-linux2.11h – 2.11h
- andries_brouwer / util-linux2.11i – 2.11i
- andries_brouwer / util-linux2.11k – 2.11k
References
- MISChttp://www.iss.net/security_center/static/7266.php
- MISChttp://www.ciac.org/ciac/bulletins/m-009.shtml
- MISChttp://www.redhat.com/support/errata/RHSA-2001-132.html
- VENDOR_ADVISORYhttp://www.novell.com/linux/security/advisories/2001_034_shadow_txt.html
- MISChttp://www.securityfocus.com/bid/3415
- MISChttp://www.securityfocus.com/archive/1/219175
- MISChttp://www.linux-mandrake.com/en/security/2001/MDKSA-2001-084.php3