Errata ID | 204 |
---|---|
Date | 2019-07-31 |
Source package | libpam-krb5 |
Fixed in version | 4.7-4A~4.4.0.201907221908 |
Description | This update addresses the following issue: * pam_krb5 now strips passwords at 1024 characters. This prevents denial of service attacks when authenticating with very long passwords when pam_krb5 would hang in the hashsum generation of the password. |
Additional notes | |
UCS Bug number | #49740 |