The pam_userdb module for Pam uses a case-insensitive method to compare hashed passwords, which makes it easier for attackers to guess the password via a brute force attack.
References
Configurations
Information
Published : 2014-05-08 07:29
Updated : 2016-12-02 19:00
NVD link : CVE-2013-7041
Mitre link : CVE-2013-7041
JSON object : View
CWE
CWE-310
Cryptographic Issues
Products Affected
cristian_gafton
- pam_userdb