ELSA-2024-3163

ELSA-2024-3163 - pam security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-05-23

Description


[1.3.1-33]
- pam_namespace: protect_dir(): use O_DIRECTORY to prevent local DoS
situations. CVE-2024-22365. Resolves: RHEL-21242

[1.3.1-32]
- pam_access: handle hostnames in access.conf. Resolves: RHEL-3374

[1.3.1-31]
- pam_faillock: create tallydir before creating tallyfile. Resolves: RHEL-19810

[1.3.1-30]
- pam_unix: enable bcrypt. Resolves: RHEL-5057


Related CVEs


CVE-2024-22365

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) pam-1.3.1-33.el8.src.rpm462f90a9ce186a181ca42cef9d042047-ol8_aarch64_baseos_latest
pam-1.3.1-33.el8.src.rpm462f90a9ce186a181ca42cef9d042047-ol8_aarch64_u10_baseos_base
pam-1.3.1-33.el8.aarch64.rpma04f149b5387674dc479f79111b02cfb-ol8_aarch64_baseos_latest
pam-1.3.1-33.el8.aarch64.rpma04f149b5387674dc479f79111b02cfb-ol8_aarch64_u10_baseos_base
pam-devel-1.3.1-33.el8.aarch64.rpmfe6af757d9266e90db0ff53f26fce9ba-ol8_aarch64_baseos_latest
pam-devel-1.3.1-33.el8.aarch64.rpmfe6af757d9266e90db0ff53f26fce9ba-ol8_aarch64_u10_baseos_base
Oracle Linux 8 (x86_64) pam-1.3.1-33.el8.src.rpm462f90a9ce186a181ca42cef9d042047-ol8_x86_64_baseos_latest
pam-1.3.1-33.el8.src.rpm462f90a9ce186a181ca42cef9d042047-ol8_x86_64_u10_baseos_base
pam-1.3.1-33.el8.i686.rpm492f6bcd08ae0caec4df4050e7ad5833-ol8_x86_64_baseos_latest
pam-1.3.1-33.el8.i686.rpm492f6bcd08ae0caec4df4050e7ad5833-ol8_x86_64_u10_baseos_base
pam-1.3.1-33.el8.x86_64.rpm93bb2171fea2c1efdf1451d16be6d64a-ol8_x86_64_baseos_latest
pam-1.3.1-33.el8.x86_64.rpm93bb2171fea2c1efdf1451d16be6d64a-ol8_x86_64_u10_baseos_base
pam-devel-1.3.1-33.el8.i686.rpm902048e756622d8e9bdf025532e4ea51-ol8_x86_64_baseos_latest
pam-devel-1.3.1-33.el8.i686.rpm902048e756622d8e9bdf025532e4ea51-ol8_x86_64_u10_baseos_base
pam-devel-1.3.1-33.el8.x86_64.rpmd21e3cb278a38d887f20d7e49467c0b4-ol8_x86_64_baseos_latest
pam-devel-1.3.1-33.el8.x86_64.rpmd21e3cb278a38d887f20d7e49467c0b4-ol8_x86_64_u10_baseos_base



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete