[Git][security-tracker-team/security-tracker][master] libpam-krb5 unimportant

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jul 5 14:59:31 BST 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
bfbc782b by Moritz Muehlenhoff at 2023-07-05T15:58:58+02:00
libpam-krb5 unimportant

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1226,7 +1226,9 @@ CVE-2023-32320 (Nextcloud Server is a data storage system for Nextcloud, a self-
 CVE-2023-31469 (A REST interface in Apache StreamPipes (versions 0.69.0 to 0.91.0) was ...)
 	NOT-FOR-US: Apache StreamPipes
 CVE-2023-3326 (pam_krb5 authenticates a user by essentially running kinit with the pa ...)
-	TODO: check
+	- libpam-krb5 <unfixed> (unimportant)
+	NOTE: Documented shortcoming of Linux pam-krb
+	NOTE: https://www.openwall.com/lists/oss-security/2023/06/22/2	
 CVE-2023-3256 (Advantech R-SeeNet  versions 2.4.22  allows low-level users to access  ...)
 	NOT-FOR-US: Advantech R-SeeNet
 CVE-2023-36371 (An issue in the GDKfree component of MonetDB Server v11.45.17 and v11. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bfbc782b8432e9e9f661d4ccd73141528e286c82

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bfbc782b8432e9e9f661d4ccd73141528e286c82
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230705/041189c7/attachment.htm>


More information about the debian-security-tracker-commits mailing list