Back
CVE-2005-2641
Unknown vulnerability in pam_ldap before 180 does not properly handle a new password policy control, which could allow attackers to gain privileges. NOTE: CVE-2005-2497 had also been assigned to this issue, but CVE-2005-2641 is the correct candidate.
Published: Aug 23, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| padl_software | pam_ldap | * |
GitHub Security Advisory GHSA-f3wv-7jx9-8mxj
Unknown vulnerability in pam_ldap before 180 does not properly handle a new password policy...
References (20)
- http://secunia.com/advisories/17233
- http://secunia.com/advisories/17270
- http://www.kb.cert.org/vuls/id/778916 US Government Resource
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:190
- http://www.redhat.com/support/errata/RHSA-2005-767.html
- http://www.securityfocus.com/archive/1/447859/100/200/threaded
- http://www.securityfocus.com/bid/14649
- https://issues.rpath.com/browse/RPL-680
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10370
- https://www.redhat.com/archives/fedora-test-list/2005-August/msg00170.html
- http://secunia.com/advisories/17233
- http://secunia.com/advisories/17270
- http://www.kb.cert.org/vuls/id/778916 US Government Resource
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:190
- http://www.redhat.com/support/errata/RHSA-2005-767.html
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
3.65%
Top 11% most likely to be exploited
Threat Score
31.1 / 100
Data Sources
NVD
EPSS
GitHub