GSI-OpenSSH PAM_USER Security Bypass Vulnerability
BID:58894
Info
GSI-OpenSSH PAM_USER Security Bypass Vulnerability
| Bugtraq ID: | 58894 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 02 2013 12:00AM |
| Updated: | Apr 13 2015 10:15PM |
| Credit: | Venkatesh Yekkirala |
| Vulnerable: |
Globus Globus Toolkit 5.2.4 Board of Trustees of the University of Illinois GSI-OpenSSH 5.5 Board of Trustees of the University of Illinois GSI-OpenSSH 4.7 |
| Not Vulnerable: |
Board of Trustees of the University of Illinois GSI-OpenSSH 5.6 |
Discussion
GSI-OpenSSH PAM_USER Security Bypass Vulnerability
GSI-OpenSSH is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and gain unauthorized access.
GSI-OpenSSH is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and gain unauthorized access.
References
GSI-OpenSSH PAM_USER Security Bypass Vulnerability
References:
References:
- GSI-OpenSSH Homepage (Board of Trustees of the University of Illinois)
- GSI-OpenSSH Security Advisory: pamuserchange-2013-01.adv (Board of Trustees of the University of Illinois)
- Globus Toolkit Advisories (Globus Toolkit )