diff options
author | Kees Cook <kees@debian.org> | 2011-10-14 19:47:23 +0000 |
---|---|---|
committer | Dmitry V. Levin <ldv@altlinux.org> | 2011-10-14 19:47:23 +0000 |
commit | 109823cb621c900c07c4b6cdc99070d354d19444 (patch) | |
tree | f75f2de0f16559f9dbbd60d8aa5312d22b5a7b56 /modules/pam_namespace/pam_namespace.c | |
parent | caf5e7f61c8d9288daa49b4f61962e6b1239121d (diff) | |
download | pam-109823cb621c900c07c4b6cdc99070d354d19444.tar.gz pam-109823cb621c900c07c4b6cdc99070d354d19444.tar.bz2 pam-109823cb621c900c07c4b6cdc99070d354d19444.zip |
pam_env: abort when encountering an overflowed environment variable expansion
* modules/pam_env/pam_env.c (_expand_arg): Abort when encountering an
overflowed environment variable expansion.
Fixes CVE-2011-3149.
Bug-Ubuntu: https://bugs.launchpad.net/ubuntu/+source/pam/+bug/874565
Diffstat (limited to 'modules/pam_namespace/pam_namespace.c')
0 files changed, 0 insertions, 0 deletions