Vulnerabilities > CVE-2001-1190 - Unspecified vulnerability in Mandrakesoft Mandrake Linux 8.1

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
mandrakesoft
nessus

Summary

The default PAM files included with passwd in Mandrake Linux 8.1 do not support MD5 passwords, which could result in a lower level of password security than intended.

Vulnerable Configurations

Part Description Count
OS
Mandrakesoft
1

Nessus

NASL familyMandriva Local Security Checks
NASL idMANDRAKE_MDKSA-2001-091.NASL
descriptionThe default pam files for the passwd program did not include support for md5 passwords, thus any password changes or post-install added users would not have md5 passwords.
last seen2020-06-01
modified2020-06-02
plugin id13904
published2004-07-31
reporterThis script is Copyright (C) 2004-2019 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/13904
titleMandrake Linux Security Advisory : passwd (MDKSA-2001:091)