Arthur de Jong

Open Source / Free Software developer

current | 2014 | 2013 | 2012 | 2011 | 2010 | 2009 | 2008 | 2007 | 2006

News in 2011

  • 2011-12-31: Release 0.8.5 of nss-pam-ldapd

    This is an update for the 0.8 series that includes a number of fixes and a few new features. The 0.8 series remains in development mode and several more changes, enhancements and new features are planned. Users that require a stable release are encouraged to stay with 0.7 until 0.8 stabilises.

    read more...
  • 2011-10-02: Release 0.7.15 of nss-pam-ldapd

    This is a bugfix release that fixes a problem in the Debian packaging where not all values for the tls_reqcert option were handled correctly.

    read more...
  • 2011-09-18: Release 0.7.14 of nss-pam-ldapd

    This is a bugfix release that addresses some annoying bugs. The fixes are intended to be minimal and have been available in the development branch for some time.

    read more...
  • 2011-09-04: Release 0.8.4 of nss-pam-ldapd

    This is an update for the 0.8 series that includes a number of fixes, new features and a few backwards incompatible changes. The 0.8 series remains in development mode and several more bigger changes, enhancements and new features are planned. Users that require a stable release are encouraged to stay with 0.7 until 0.8 stabilises.

    read more...
  • 2011-05-13: Release 0.8.3 of nss-pam-ldapd

    This is an update for the 0.8 series that fixes some bugs and introduces some new features. The 0.8 series remains in development mode and several more bigger changes, enhancements and new features are planned. Users that require a stable release are encouraged to stay with 0.7 until 0.8 stabilises.

    read more...
  • 2011-03-26: Release 0.8.2 of nss-pam-ldapd

    This is an update for the 0.8 series that fixes some bugs and introduces some new features but mainly focusses on improving the tests to avoid another security problem as was seen in 0.8.0.

    read more...
  • 2011-03-10 security update: Release 0.8.1 of nss-pam-ldapd

    This is an update for the 0.8 series that fixes a security problem that allows authentication for users not in LDAP. See the advisory and the news item for details.
    The CVE project has assigned CVE-2011-0438 to this problem.

    read more...
  • 2011-03-09 security advisory: CVE-2011-0438: authentication bypass for local accounts

    A serious security vulnerability was found in development release 0.8.0 of nss-pam-ldapd that allows authentication with an incorrect password for local user accounts.
    The PAM module erroneously returned a success code when the user could not be found in LDAP.

    read more...