HP-UX PAM 'libpam_updbe' Authentication Bypass Vulnerability
BID:71308
Info
HP-UX PAM 'libpam_updbe' Authentication Bypass Vulnerability
| Bugtraq ID: | 71308 |
| Class: | Unknown |
| CVE: |
CVE-2014-7879 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 26 2014 12:00AM |
| Updated: | Nov 26 2014 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
HP HP-UX B.11.31 HP HP-UX B.11.23 HP HP-UX B.11.11 |
| Not Vulnerable: | |
Discussion
HP-UX PAM 'libpam_updbe' Authentication Bypass Vulnerability
HP-UX running PAM is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass the authentication mechanism and perform unauthorized actions on the affected computer. This may aid in further attacks.
HP-UX running PAM is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass the authentication mechanism and perform unauthorized actions on the affected computer. This may aid in further attacks.
Exploit / POC
HP-UX PAM 'libpam_updbe' Authentication Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
HP-UX PAM 'libpam_updbe' Authentication Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
HP-UX PAM 'libpam_updbe' Authentication Bypass Vulnerability
References:
References: