CVE-2006-5170

Impact:
Moderate
Public Date:
2006-09-20
Bugzilla:
1618208: CVE-2006-5170 security flaw

The MITRE CVE dictionary describes this issue as:

pam_ldap in nss_ldap on Red Hat Enterprise Linux 4, Fedora Core 3 and earlier, and possibly other distributions does not return an error condition when an LDAP directory server responds with a PasswordPolicyResponse control response, which causes the pam_authenticate function to return a success code even if authentication has failed, as originally reported for xscreensaver.

Find out more about CVE-2006-5170 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 4 (nss_ldap) RHSA-2006:0719 2006-11-15

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.