ELSA-2013-0521

ELSA-2013-0521 - pam security, bug fix, and enhancement update

Type:SECURITY
Severity:MODERATE
Release Date:2013-02-22

Description


[1.1.1-13]
- fix environment file handling problems - CVE-2011-3148 (#746619) and
CVE-2011-3148 (#746620)

[1.1.1-12]
- add character sequence test to pam_cracklib
- drop unused difignore option from pam_cracklib (#811243)
- add enforce_for_root option to pam_cracklib (#588893)
- mention limits.d in the limits.conf(5) manpage (#723297)
- add ability to lock out inactive accounts to pam_lastlog
- fix require_selinux option in pam_namespace (#750601)
- add mntopts flag for tmpfs polyinstantiation method
- preserve authtok_type in pam_get_authtok() (#811168)
- fix username mismatch in pam_unix remember feature (#815516)
- relax restriction of root in pam_pwhistory
- relax soft nproc limit for root in 90-nproc.conf

[1.1.1-11]
- additional password checks in pam_cracklib


Related CVEs


CVE-2011-3148
CVE-2011-3149

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) pam-1.1.1-13.el6.src.rpm685e8688d1bc406ebe38c7b2cb75356bELBA-2017-0759
pam-1.1.1-13.el6.i686.rpm5c55628a424e0f78dc578ea8b4e5a5ebELBA-2017-0759
pam-devel-1.1.1-13.el6.i686.rpm5a4a31dca57442e507eb8bb4550358fcELBA-2017-0759
Oracle Linux 6 (x86_64) pam-1.1.1-13.el6.src.rpm685e8688d1bc406ebe38c7b2cb75356bELBA-2017-0759
pam-1.1.1-13.el6.i686.rpm5c55628a424e0f78dc578ea8b4e5a5ebELBA-2017-0759
pam-1.1.1-13.el6.x86_64.rpm72b47fdbae899802809a40362ac4842eELBA-2017-0759
pam-devel-1.1.1-13.el6.i686.rpm5a4a31dca57442e507eb8bb4550358fcELBA-2017-0759
pam-devel-1.1.1-13.el6.x86_64.rpm763d0ae5a2f63e4c689da695c6a266a2ELBA-2017-0759



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete