diff --git a/.gitmodules b/.gitmodules index 5f6ffbf..911465f 100644 --- a/.gitmodules +++ b/.gitmodules @@ -7086,7 +7086,7 @@ url = ../../pool/pcsc-tools [submodule "pam_pkcs11"] path = pam_pkcs11 - url = ../../pool/pam_pkcs11 + url = ../../ALP-pool/pam_pkcs11 [submodule "opensc"] path = opensc url = ../../ALP-pool/opensc diff --git a/pam_pkcs11 b/pam_pkcs11 index d502fed..5525877 160000 --- a/pam_pkcs11 +++ b/pam_pkcs11 @@ -1 +1 @@ -Subproject commit d502fedf3b507cdbbc58a915379d8cfb91bb0fdf +Subproject commit 5525877da00630cdd027fe2ef42abee41fbdaed7 diff --git a/patchinfo.20250225155631461773.154186277494808/_patchinfo b/patchinfo.20250225155631461773.154186277494808/_patchinfo new file mode 100644 index 0000000..83d5c27 --- /dev/null +++ b/patchinfo.20250225155631461773.154186277494808/_patchinfo @@ -0,0 +1,15 @@ + + + VUL-0: CVE-2025-24531: pam_pkcs11: version 0.6.12 has a regression returning PAM_IGNORE in many situations with possible authentication bypass + + ayankov + critical + security + Security update for pam_pkcs11 + This update for pam_pkcs11 fixes the following issues: + +- CVE-2025-24531: Fixed regression in version 0.6.12 returning PAM_IGNORE in many situations with possible authentication bypass (bsc#1236314). + + pam_pkcs11 + +