SciLinux: CVE-2006-7108 util-linux SL4.x i386/x86_64
Summary
Date: Mon, 14 May 2007 17:18:53 -0500Reply-To: Connie SiehSender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for util-linux for SL4.x i386/x86_64Comments: To: scientific Synopsis: Low: util-linux security and bug fix updateIssue date: 2007-05-01CVE Names: CVE-2006-7108A flaw was found in the way the login process handled logins which did notrequire authentication. Certain processes which conduct their ownauthentication could allow a remote user to bypass intended access policieswhich would normally be enforced by the login process. (CVE-2006-7108)SRPMS: util-linux-2.12a-16.EL4.25.src.rpmi386: util-linux-2.12a-16.EL4.25.i386.rpmx86_64: util-linux-2.12a-16.EL4.25.x86_64.rpm-Connie Sieh-Troy Dawson