Description
It was found that libpam4j up to and including 1.8 did not properly validate user accounts when authenticating. A user with a valid password for a disabled account would be able to bypass security restrictions and possibly access sensitive information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1165-1 | libpam4j security update |
Debian DSA |
DSA-4025-1 | libpam4j security update |
EUVD |
EUVD-2022-5757 | It was found that libpam4j up to and including 1.8 did not properly validate user accounts when authenticating. A user with a valid password for a disabled account would be able to bypass security restrictions and possibly access sensitive information. |
Github GHSA |
GHSA-x9rg-q5fx-fx66 | Improper Input Validation in libpam4j |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T18:28:16.597Z
Reserved: 2017-08-01T00:00:00.000Z
Link: CVE-2017-12197
No data.
Status : Modified
Published: 2018-01-18T21:29:00.203
Modified: 2024-11-21T03:09:02.127
Link: CVE-2017-12197
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Github GHSA