UbuntuUpdates.org

Package "libpam-pkcs11"

Name: libpam-pkcs11

Description:

Fully featured PAM module for using PKCS#11 smart cards

Latest version: 0.6.12-2ubuntu0.24.04.1
Release: noble (24.04)
Level: updates
Repository: universe
Head package: pam-pkcs11
Homepage: https://github.com/OpenSC/pam_pkcs11/wiki

Links


Download "libpam-pkcs11"


Other versions of "libpam-pkcs11" in Noble

Repository Area Version
base universe 0.6.12-2build3
security universe 0.6.12-2ubuntu0.24.04.1

Changelog

Version: 0.6.12-2ubuntu0.24.04.1 2025-03-20 23:06:53 UTC

  pam-pkcs11 (0.6.12-2ubuntu0.24.04.1) noble-security; urgency=medium

  * SECURITY UPDATE: authentication bypass
    - debian/patches/CVE-2025-24032*.patch: makes the use of signatures to
      verify authentication the default behavior when using X.509
      certificates.
    - CVE-2025-24032
  * SECURITY UPDATE: authentication bypass
    - debian/patches/CVE-2025-24531.patch: changes previously implemented
      default behavior of returning PAM_IGNORE in most cases where
      authentication was not possible.
    - CVE-2025-24531

 -- Ian Constantin <email address hidden> Mon, 03 Mar 2025 16:02:29 +0200

CVE-2025-24032 PAM-PKCS#11 is a Linux-PAM login module that allows a X.509 certificate based user login. Prior to version 0.6.13, if cert_policy is set to none (the
CVE-2025-24531 Possible Authentication Bypass in Error Situations



About   -   Send Feedback to @ubuntu_updates