CVE-2011-0438

Publication date 15 March 2011

Last updated 24 July 2024


Ubuntu priority

Description

nslcd/pam.c in the nss-pam-ldapd 0.8.0 PAM module returns a success code when a user is not found in LDAP, which allows remote attackers to bypass authentication.

Status

Package Ubuntu Release Status
nss-pam-ldapd 10.10 maverick
Not affected
10.04 LTS lucid
Not affected
9.10 karmic Not in release
8.04 LTS hardy Not in release
6.06 LTS dapper Not in release


Access our resources on patching vulnerabilities