.:[ packet storm ]:.
                             
security is a process, not a fix
security is a process, not a fix

 ///  File Name:MDVSA-2008-209.txt
Description:
Mandriva Linux Security Advisory - Stéphane Bertin discovered a flaw in the pam_krb5 existing_ticket configuration option where, if enabled and using an existing credential cache, it was possible for a local user to gain elevated privileges by using a different, local user's credential cache. The updated packages have been patched to prevent this issue.
Homepage:http://www.mandriva.com/security/
File Size:3263
Related CVE(s):CVE-2008-3825
Last Modified:Oct 6 18:36:25 2008
MD5 Checksum:6c8c02e04058c8e9e9b7b397c121754e

 .:. Back