Package: libpam-nufw
Version: 2.2.15-1
Severity: serious
Tags: security

Hello Pierre,
libpam-nufw includes a binary /lib/security/pam_nufw.so with a rpath pointing 
to /home/pollux/DEBIAN/NUFW/nufw-2.2.15/src/clients/lib/.libs.

This allows an attacker with write access to that directory to
add modified libraries which will be loaded when someone
else run libpam-nufw.

Cheers,
-- 
Bill. <[EMAIL PROTECTED]>

Imagine a large red swirl here. 



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to