CVE-2011-0438

Publication date 15 March 2011

Last updated 24 July 2024


Ubuntu priority

nslcd/pam.c in the nss-pam-ldapd 0.8.0 PAM module returns a success code when a user is not found in LDAP, which allows remote attackers to bypass authentication.

Status

Package Ubuntu Release Status
nss-pam-ldapd 10.10 maverick
Not affected
10.04 LTS lucid
Not affected
9.10 karmic Not in release
8.04 LTS hardy Not in release
6.06 LTS dapper Not in release