Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 163631 - sys-libs/pam Login Bypass Security Vulnerability CVE-2007-0003
Summary: sys-libs/pam Login Bypass Security Vulnerability CVE-2007-0003
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: High trivial (vote)
Assignee: Gentoo Security
URL: http://secunia.com/advisories/23858/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2007-01-24 19:23 UTC by Executioner
Modified: 2007-01-25 18:47 UTC (History)
4 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Executioner 2007-01-24 19:23:36 UTC
A vulnerability has been reported in Linux-PAM, which can be exploited by malicious people to bypass certain security restrictions.

The vulnerability is caused due to an error within the "_unix_verify_password()" function in modules/pam_unix/support.c when verifying a user's password. This can be exploited to login with any given password if the hash in the passwd file is "!!" or similar.

The vulnerability is reported in version 0.99.7.0.


Reproducible: Didn't try




https://www.redhat.com/archives/pam-list/2007-January/msg00017.html
http://www.redhat.com/archives/fedora-devel-list/2007-January/msg01277.html
Comment 1 Diego Elio Pettenò (RETIRED) gentoo-dev 2007-01-24 19:34:12 UTC
Is this an issue with the obsolete 0.78 version we have stable?

Doesn't seem to:

> This release fixes a serious problem in pam_unix.so introduced in the
> previous release 0.99.7.0.

I'll update the ebuild for ~arch.
Comment 2 Diego Elio Pettenò (RETIRED) gentoo-dev 2007-01-24 19:37:41 UTC
Also, as far as I can see, !! is not our default for shadow file.
Comment 3 Diego Elio Pettenò (RETIRED) gentoo-dev 2007-01-24 19:54:49 UTC
0.99.7.1 in tree, the needed patch is on its way to mirrors.
Comment 4 Tavis Ormandy (RETIRED) gentoo-dev 2007-01-25 18:47:53 UTC
Thanks Everyone, marking FIXED.