DSA-4595-1 debian-lan-config -- debian-lan-configID: oval:org.secpod.oval:def:604660 | Date: (C)2019-12-30 (M)2022-12-30 |
Class: PATCH | Family: unix |
It was discovered that debian-lan-config, a FAI config space for the Debian-LAN system, configured too permissive ACLs for the Kerberos admin server, which allowed password changes for other user principals. This update provides a fixed configuration for new deployments, for existing setups, the NEWS file shipped in this update provides advice to fix the configuration.
Platform: |
Debian 10.x |
Debian 9.x |
Product: |
debian-lan-config |