SuSE 10 Security Update : pam (ZYPP Patch Number 7814)
Medium Nessus Plugin ID 57239
The remote SuSE 10 host is missing a security-related patch.
The pam_env module is vulnerable to a stack overflow (CVE-2011-3148) and a DoS condition (CVE-2011-3149) when parsing users .pam_environment files. Additionally a missing return value check inside pam_xauth has been fixed. (CVE-2010-3316)