Format: 1.8 Date: Tue, 18 Oct 2011 10:26:13 -0400 Source: pam Binary: libpam0g libpam-modules libpam-runtime libpam0g-dev libpam-cracklib libpam-doc Architecture: amd64 amd64_translations Version: 1.1.1-2ubuntu5.4 Distribution: lucid Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: libpam-cracklib - PAM module to enable cracklib support libpam-doc - Documentation of PAM libpam-modules - Pluggable Authentication Modules for PAM libpam-runtime - Runtime support for the PAM library libpam0g - Pluggable Authentication Modules library libpam0g-dev - Development files for PAM Launchpad-Bugs-Fixed: 874469 874565 Changes: pam (1.1.1-2ubuntu5.4) lucid-security; urgency=low . * SECURITY UPDATE: possible code execution via incorrect environment file parsing (LP: #874469) - debian/patches-applied/CVE-2011-3148.patch: correctly count leading whitespace when parsing environment file in modules/pam_env/pam_env.c. - CVE-2011-3148 * SECURITY UPDATE: denial of service via overflowed environment variable expansion (LP: #874565) - debian/patches-applied/CVE-2011-3149.patch: when overflowing, exit with PAM_BUF_ERR in modules/pam_env/pam_env.c. - CVE-2011-3149 * SECURITY UPDATE: code execution via incorrect environment cleaning - debian/patches-applied/update-motd: updated to use clean environment and absolute paths in modules/pam_motd/pam_motd.c. - CVE-2011-XXXX Checksums-Sha1: 6afbd78e892455469c4e059203ce2d7797c6d243 126942 libpam0g_1.1.1-2ubuntu5.4_amd64.deb b2ec00b210a2af6689ef50421f7b365fbe499a86 385900 libpam-modules_1.1.1-2ubuntu5.4_amd64.deb 9984c2a939d191ea047c7a164f39298d769a0c7a 190042 libpam0g-dev_1.1.1-2ubuntu5.4_amd64.deb e50509eba0f1894398818fb149cae494c3280ce7 88250 libpam-cracklib_1.1.1-2ubuntu5.4_amd64.deb b8c9d7435e36571920733942f3a1c3260bebd650 139346 pam_1.1.1-2ubuntu5.4_amd64_translations.tar.gz Checksums-Sha256: 83a2a38fca682387721703659599c38a9d2e823ea9059159370222e5e9c5b92c 126942 libpam0g_1.1.1-2ubuntu5.4_amd64.deb cb491b0e3a7ff48b8b9776ec94809b4402d28188c687060b5d5d628de4dddb16 385900 libpam-modules_1.1.1-2ubuntu5.4_amd64.deb 9dc9f37eb046f0a89c0ecc07d99a1ea9abcd8e38809b7426eecbecf3aff94e1b 190042 libpam0g-dev_1.1.1-2ubuntu5.4_amd64.deb 853c53699a1de59811d10e9b52b1a634b85c445d6ba1cae2b11f7d91270651a0 88250 libpam-cracklib_1.1.1-2ubuntu5.4_amd64.deb 103ca2650d0f25a4319b1884f086a4fbaebd6373f8876b1111d854565c9619f0 139346 pam_1.1.1-2ubuntu5.4_amd64_translations.tar.gz Files: 4edbc5d3761773dc05c938697639d446 126942 libs required libpam0g_1.1.1-2ubuntu5.4_amd64.deb e1d6a459496725470caa9156bdc7a6ea 385900 admin required libpam-modules_1.1.1-2ubuntu5.4_amd64.deb 8820910262af21924b7215a4f2d34d20 190042 libdevel optional libpam0g-dev_1.1.1-2ubuntu5.4_amd64.deb c7ee24a6c15cf2cca2b3ec9f5283df04 88250 admin optional libpam-cracklib_1.1.1-2ubuntu5.4_amd64.deb f610f764b01e3c8ddf9c1208e7b9d39a 139346 raw-translations - pam_1.1.1-2ubuntu5.4_amd64_translations.tar.gz Original-Maintainer: Steve Langasek