Processed: Re: Bug#392984: CVE-2006-5170: pam_ldap authentication bypass

2006-10-14 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reassign 392984 libpam-ldap Bug#392984: CVE-2006-5170: pam_ldap authentication bypass Warning: Unknown package 'libpam' Bug reassigned from package `libpam_ldap' to `libpam-ldap'. > -- Stopping processing here. Ple

Bug#392984: CVE-2006-5170: pam_ldap authentication bypass

2006-10-14 Thread Stefan Fritsch
Package: libpam_ldap Severity: grave Tags: security patch Justification: user security hole A vulnerability has been found in libpam_ldap: pam_ldap in nss_ldap on Red Hat Enterprise Linux 4, Fedora Core 3 and earlier, and possibly other distributions does not return an error condition when an LDA