Vulnerability Scanning Solutions, LLC.
Our Process
What We Scan For
Sample Report
Client List
Contact Us
What We Scan For
Family: Debian Local Security Checks --> Category: infos

[DSA421] DSA-421-1 mod-auth-shadow Vulnerability Scan

Vulnerability Scan Summary
DSA-421-1 mod-auth-shadow

Detailed Explanation for this Vulnerability Test

David B Harris discovered a problem with mod-auth-shadow, an Apache
module which authenticates users against the system shadow password
database, where the expiration status of the user's account and
password were not enforced. This vulnerability would allow an
otherwise authorized user to successfully authenticate, when the
attempt should be rejected due to the expiration parameters.
For the current stable distribution (woody) this problem has been
fixed in version 1.3-3.1woody.1
For the unstable distribution (sid) this problem has been fixed in
version 1.4-1.
We recommend that you update your mod-auth-shadow package.

Solution :
Threat Level: High

Click HERE for more information and discussions on this network vulnerability scan.


P.O. Box 827051

Pembroke Pines, FL 33082-7051

Vulnerability Scanning Solutions, LLC.