Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2006-5170

Publication date 10 October 2006

Last updated 24 July 2024


Ubuntu priority

pam_ldap in nss_ldap on Red Hat Enterprise Linux 4, Fedora Core 3 and earlier, and possibly other distributions does not return an error condition when an LDAP directory server responds with a PasswordPolicyResponse control response, which causes the pam_authenticate function to return a success code even if authentication has failed, as originally reported for xscreensaver.

Status

Package Ubuntu Release Status
libpam-ldap 7.04 feisty
Fixed 180-1.7
6.10 edgy
Fixed 180-1ubuntu0.6.10
6.06 LTS dapper
Fixed 180-1ubuntu0.6.06