Oval Definition:oval:org.mitre.oval:def:20062
Revision Date:2014-06-23Version:7
Title:DSA-2628-1 nss-pam-ldapd - buffer overflow
Description:Garth Mollett discovered that a file descriptor overflow issue in the use of FD_SET() in nss-pam-ldapd, which provides NSS and PAM modules for using LDAP as a naming service, can lead to a stack-based buffer overflow. An attacker could, under some circumstances, use this flaw to cause a process that has the NSS or PAM module loaded to crash or potentially execute arbitrary code.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2013-0288
DSA-2628-1
Platform(s):Debian GNU/kFreeBSD 6.0
Debian GNU/Linux 6.0
Product(s):nss-pam-ldapd
Definition Synopsis
  • Debian 6.0 is installed
  • AND GNU/Linux or GNU/kFreeBSD kernel
  • Debian GNU/Linux is installed
  • OR Debian GNU/kFreeBSD is installed
  • AND nss-pam-ldapd DPKG is earlier than 0:0.7.15+squeeze3
  • BACK