Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Webmin / Usermin Remote PAM Authentication Bypass Vulnerability

Solution:
The vendor has released updated versions of the affected packages to address this issue.

Gentoo has released advisory GLSA 200509-17 to address these issues. Please see the referenced advisory for more information. Gentoo users may carry out the following commands to update their computers:

All Webmin users:

emerge --sync
emerge --ask --oneshot --verbose ">=app-admin/webmin-1.230"

All Usermin users:

emerge --sync
emerge --ask --oneshot --verbose ">=app-admin/usermin-1.160"

Mandriva has released advisory MDKSA-2005:176 to address this issue. Please see the referenced advisory for further information.

SUSE Linux has released security advisory SUSE-SR:2005:024 addressing this issue. Please see the referenced advisory for details on obtaining and applying the appropriate updates.


Webmin Usermin 1.130

Webmin Usermin 1.140

Webmin Usermin 1.150

Webmin Webmin 1.200

Webmin Webmin 1.210

Webmin Webmin 1.220







 

Privacy Statement
Copyright 2008, SecurityFocus