CVE-2005-2977

Publication date 1 November 2005

Last updated 17 July 2025


Ubuntu priority

Description

The SELinux version of PAM before 0.78 r3 allows local users to perform brute force password guessing attacks via unix_chkpwd, which does not log failed guesses or delay its responses.

Status

Package Ubuntu Release Status
pam 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected


Access our resources on patching vulnerabilities