The pam_parse_in_data_v2 function in src/responder/pam/pamsrv_cmd.c in the PAM responder in SSSD 1.5.0, 1.4.x, and 1.3 allows local users to cause a denial of service (infinite loop, crash, and login prevention) via a crafted packet.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2011-01-25T00:00:00
Updated: 2024-08-07T03:43:14.801Z
Reserved: 2010-11-30T00:00:00
Link: CVE-2010-4341
Vulnrichment
No data.
NVD
Status : Modified
Published: 2011-01-25T01:00:01.737
Modified: 2017-08-17T01:33:09.883
Link: CVE-2010-4341
Redhat