Oval Definition:oval:org.mitre.oval:def:15248
Revision Date:2014-06-23Version:19
Title:DSA-2326-1 pam -- several
Description:Kees Cook of the ChromeOS security team discovered a buffer overflow in pam_env, a PAM module to set environment variables through the PAM stack, which allowed the execution of arbitrary code. An additional issue in argument parsing allows denial of service. The oldstable distribution is not affected.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2011-3148
CVE-2011-3149
DSA-2326-1
Platform(s):Debian GNU/kFreeBSD 6.0
Debian GNU/Linux 6.0
Product(s):pam
Definition Synopsis
  • Debian 6.0 is installed
  • AND GNU/Linux or GNU/kFreeBSD kernel
  • Debian GNU/Linux is installed
  • OR Debian GNU/kFreeBSD is installed
  • AND Installed architecture is all
  • AND pam DPKG is earlier than 1.1.1-6.1+squeeze1
  • BACK