CVE-2004-2396 Information

Description

passwd 0.68 does not check the return code for the pam_start function which has unknown impact and attack vectors that may prevent \safe and proper operation\ of PAM.

Reference

http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=120060 http://www.mandriva.com/security/advisories?name=MDKSA-2004:045 http://www.securityfocus.com/bid/10370 https://exchange.xforce.ibmcloud.com/vulnerabilities/16179

Share on: