This script is Copyright (C) 2013 Tenable Network Security, Inc.
The remote Amazon Linux AMI host is missing a security update.
Due to the way the pam_ssh_agent_auth PAM module was built, the
glibc's error() function was called rather than the intended error()
function in pam_ssh_agent_auth to report errors. As these two
functions expect different arguments, it was possible for an attacker
to cause an application using pam_ssh_agent_auth to crash, disclose
portions of its memory or, potentially, execute arbitrary code.
See also :
Run 'yum update openssh' to update your system.
Risk factor :
Medium / CVSS Base Score : 6.2
Family: Amazon Linux Local Security Checks
Nessus Plugin ID: 69724 ()
CVE ID: CVE-2012-5536