libpam-radius-auth 1.3.17-0ubuntu5.18.04.1 source package in Ubuntu


libpam-radius-auth (1.3.17-0ubuntu5.18.04.1) bionic-security; urgency=medium

  * SECURITY UPDATE: DoS via stack overflow in password field
    - debian/patches/CVE-2015-9542-1.patch: use length, which has been
      limited in size in src/pam_radius_auth.c.
    - debian/patches/CVE-2015-9542-2.patch: clear out trailing part of the
      buffer in src/pam_radius_auth.c.
    - debian/patches/CVE-2015-9542-3.patch: copy password to buffer before
      rounding length in src/pam_radius_auth.c.
    - debian/rules: added new patches.
    - CVE-2015-9542

 -- Marc Deslauriers <email address hidden>  Wed, 19 Feb 2020 07:53:50 -0500

Upload details

Uploaded by:
Marc Deslauriers on 2020-02-19
Uploaded to:
Original maintainer:
Ubuntu Developers
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Bionic updates on 2020-02-24 main libs
Bionic security on 2020-02-24 main libs


File Size SHA-256 Checksum
libpam-radius-auth_1.3.17.orig.tar.gz 30.6 KiB 60ee863cbea797be46eff8b9d568af057c6e54335bdb19a6bd2cadde389d7dca
libpam-radius-auth_1.3.17-0ubuntu5.18.04.1.diff.gz 12.1 KiB cf75301fe774dbd6f9763af5c7953d68d8df9da170ca44a941502bee31019a85
libpam-radius-auth_1.3.17-0ubuntu5.18.04.1.dsc 1.9 KiB 0f76c7d2392b0b958755134907c10223ad486b92a2f17f3086125fca9d994daf

View changes file

Binary packages built by this source

libpam-radius-auth: The PAM RADIUS authentication module

 This is the PAM to RADIUS authentication module. It allows any PAM-capable
 machine to become a RADIUS client for authentication and accounting
 requests. You will, however, need to supply your own RADIUS server to
 perform the actual authentication

libpam-radius-auth-dbgsym: debug symbols for libpam-radius-auth