ykclient: Authentication bypass via NULL password
Package(s): | ykclient | CVE #(s): | CVE-2011-4120 | ||||||||||||
Created: | December 13, 2011 | Updated: | December 14, 2011 | ||||||||||||
Description: | Pressing Ctrl-D when the Yubico PAM Module prompts for password will allow the user to log in without a password. See the Red Hat bugzilla for details. | ||||||||||||||
Alerts: |
|