~ubuntu-branches/ubuntu/oneiric/pam/oneiric-security

  • Committer: Bazaar Package Importer
  • Author(s): Marc Deslauriers
  • Date: 2011-10-18 09:33:47 UTC
  • Revision ID: james.westby@ubuntu.com-20111018093347-aex84tun7gwftvle
Tags: 1.1.3-2ubuntu2.1
* SECURITY UPDATE: possible code execution via incorrect environment file
  parsing (LP: #874469)
  - debian/patches-applied/CVE-2011-3148.patch: correctly count leading
    whitespace when parsing environment file in modules/pam_env/pam_env.c.
  - CVE-2011-3148
* SECURITY UPDATE: denial of service via overflowed environment variable
  expansion (LP: #874565)
  - debian/patches-applied/CVE-2011-3149.patch: when overflowing, exit
    with PAM_BUF_ERR in modules/pam_env/pam_env.c.
  - CVE-2011-3149
* SECURITY UPDATE: code execution via incorrect environment cleaning
  - debian/patches-applied/update-motd: updated to use clean environment
    and absolute paths in modules/pam_motd/pam_motd.c.
  - CVE-2011-XXXX
Filename Latest Rev Last Changed Committer Comment Size
..
pam_conv1 1.1.4 15 years ago Bazaar Package Importer Import upstream version 1.0.1 Diff
File install_conf 1.1.4 15 years ago Bazaar Package Importer Import upstream version 1.0.1 677 bytes Diff Download File
Makefile.am 1.1.4 15 years ago Bazaar Package Importer Import upstream version 1.0.1 83 bytes Diff Download File
Makefile.in 82 12 years ago Bazaar Package Importer * Merge with Debian to get bug fix for unknown ker 16.2 KB Diff Download File
File md5itall 1.1.4 15 years ago Bazaar Package Importer Import upstream version 1.0.1 1 KB Diff Download File
pam.conf 1.1.4 15 years ago Bazaar Package Importer Import upstream version 1.0.1 4.3 KB Diff Download File