CLSA-2024-1733245591

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2024-1733245591.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2024-1733245591
Upstream
Published
2024-12-03T17:06:37Z
Modified
2026-06-01T00:32:56.978962806Z
Summary
pam: Fix of CVE-2024-10963
Details
  • CVE-2024-10963: fix a flaw found in pam_access, where certain rules in its configuration file are mistakenly treated as hostnames. There is the new 'nodns' option which should be enabled to fix the CVE.
References

Affected packages

TuxCare:CentOS-Stream:8 / pam

Package

Name
pam
Purl
pkg:rpm/tuxcare/pam?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.1-33.el8.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2024-1733245591.json"

TuxCare:CentOS-Stream:8 / pam-devel

Package

Name
pam-devel
Purl
pkg:rpm/tuxcare/pam-devel?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.1-33.el8.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2024-1733245591.json"