| [Security Announce] [ MDVA-2009:055 ] webmin |
|
|
|
| Écrit par Administrator |
| Dimanche, 26 Avril 2009 14:21 |
|
_______________________________________________________________________ Mandriva Linux Advisory MDVA-2009:055 http://www.mandriva.com/security/ _______________________________________________________________________ Package : webmin Date : April 23, 2009 Affected: 2009.0 _______________________________________________________________________ Problem Description: Webmin shipped with Mandriva Linux 2009.0 used crypt method for password creation, which prevented usage of passwords longer than 8 character. This update configures webmin to create MD5 passwords for new users by default. _______________________________________________________________________ References: https://qa.mandriva.com/49788 _______________________________________________________________________ Updated Packages: Mandriva Linux 2009.0: 6df6022ec53b80b837ebef9820712e08 2009.0/i586/webmin-1.420-3.1mdv2009.0.noarch.rpm dba07edd38f75af8829d1a90b20835c5 2009.0/SRPMS/webmin-1.420-3.1mdv2009.0.src.rpm Mandriva Linux 2009.0/X86_64: 9686dd0de660271d8d931ba067eaa110 2009.0/x86_64/webmin-1.420-3.1mdv2009.0.noarch.rpm dba07edd38f75af8829d1a90b20835c5 2009.0/SRPMS/webmin-1.420-3.1mdv2009.0.src.rpm _______________________________________________________________________ To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/security/advisories If you want to report vulnerabilities, please contact security_(at)_mandriva.com _______________________________________________________________________ |



























































