CVE-2005-2977

Priority
Description
The SELinux version of PAM before 0.78 r3 allows local users to perform
brute force password guessing attacks via unix_chkpwd, which does not log
failed guesses or delay its responses.
Notes
Package
Source: pam (LP Ubuntu Debian)
Upstream:needs-triage
More Information

Updated: 2020-09-09 23:44:50 UTC (commit 81a23a978c4436cd99e1d040e9e73e9146876281)