Mandrake Linux Security Advisory : pam (MDKSA-2000:082-1)
High Nessus Plugin ID 61868
SynopsisThe remote Mandrake Linux host is missing one or more security updates.
DescriptionThe pam_localuser module, which is a part of the pam package, contains a buffer overflow vulnerability. This module is not used in any default configuration and for a user to be exploited, they would have to manually insert it into a configuration file in the /etc/pam.d directory.
The pam packages for 7.2 had a dependency problem with kdebase due to the version number. New packages are now available for 7.2 that correct this problem.
SolutionUpdate the affected pam, pam-devel and / or pam-doc packages.