Back to search
CVE-2009-0579
Published: Apr 16, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
Linux-PAM before 1.0.4 does not enforce the minimum password age (MINDAYS) as specified in /etc/shadow, which allows local users to bypass intended security policy and change their passwords sooner than specified.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
34728
third-party-advisory
x_refsource_SECUNIA
https://bugzilla.redhat.com/show_bug.cgi?id=487216
x_refsource_CONFIRM
FEDORA-2009-3204
vendor-advisory
x_refsource_FEDORA
[pam-list] 20090309 Linux-PAM 1.0.4 released
mailing-list
x_refsource_MLIST
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=514437
x_refsource_CONFIRM
FEDORA-2009-3231
vendor-advisory
x_refsource_FEDORA
34733
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now