ELSA-2010-0819

ELSA-2010-0819 - pam security update

Type:SECURITY
Severity:MODERATE
Release Date:2010-11-01

Description



[0.99.6.2-6.2]
- fix insecure dropping of priviledges in pam_xauth
and pam_mail - CVE-2010-3316 (#637898), CVE-2010-3435 (#641335)
- fix insecure executing of scripts with user supplied environment
variables in pam_namespace - CVE-2010-3853 (#643043)


Related CVEs


CVE-2010-3316
CVE-2010-3435
CVE-2010-3853
CVE-2010-4707

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) pam-0.99.6.2-6.el5_5.2.src.rpm0b40d05cc778daac1a784b12cf08e579ELBA-2015-1032
pam-0.99.6.2-6.el5_5.2.i386.rpm428de6967c54a4d952792307a2e4d998ELBA-2015-1032
pam-devel-0.99.6.2-6.el5_5.2.i386.rpme919d81b6c4bdc317e5d3afd83345028ELBA-2015-1032
Oracle Linux 5 (ia64) pam-0.99.6.2-6.el5_5.2.src.rpm0b40d05cc778daac1a784b12cf08e579ELBA-2015-1032
pam-0.99.6.2-6.el5_5.2.i386.rpm428de6967c54a4d952792307a2e4d998ELBA-2015-1032
pam-0.99.6.2-6.el5_5.2.ia64.rpm0af685f6af8aa6100caca335c4414a19ELBA-2015-1032
pam-devel-0.99.6.2-6.el5_5.2.ia64.rpm2e162b933d8ca3caf866077fbde531e4ELBA-2015-1032
Oracle Linux 5 (x86_64) pam-0.99.6.2-6.el5_5.2.src.rpm0b40d05cc778daac1a784b12cf08e579ELBA-2015-1032
pam-0.99.6.2-6.el5_5.2.i386.rpm428de6967c54a4d952792307a2e4d998ELBA-2015-1032
pam-0.99.6.2-6.el5_5.2.x86_64.rpmc8b049876b61dc1399c09c1f41971776ELBA-2015-1032
pam-devel-0.99.6.2-6.el5_5.2.i386.rpme919d81b6c4bdc317e5d3afd83345028ELBA-2015-1032
pam-devel-0.99.6.2-6.el5_5.2.x86_64.rpm8ae07d86e583161185437a02183efc64ELBA-2015-1032



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete