Required CVE Record Information
Description
A flaw was found in the Pacemaker configuration tool (pcs). The pcs daemon was allowing expired accounts, and accounts with expired passwords to login when using PAM authentication. Therefore, unprivileged expired accounts that have been denied access could still login.
References 3 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- https://huntr.dev/bounties/7aa921fc-a568-4fd8-96f4-7cd826246aa5 x_transferred
- debian.org: DSA-5226 vendor-advisoryx_transferred
- lists.debian.org: [debian-lts-announce] 20220914 [SECURITY] [DLA 3108-1] pcs security update mailing-listx_transferred