Referenced CVEs:
CVE-2010-0833
Description:
===========================================================
Ubuntu Security Notice USN-964-1 July 26, 2010
likewise-open vulnerability
CVE-2010-0833
===========================================================
Ubuntu Security Notice USN-964-1 July 26, 2010
likewise-open vulnerability
CVE-2010-0833
===========================================================
A security issue affects the following Ubuntu releases:
Ubuntu 10.04 LTS
This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.
The problem can be corrected by upgrading your system to the
following package versions:
Ubuntu 10.04 LTS:
likewise-open5-lsass 5.4.0.42111-2ubuntu1.1
In general, a standard system update will make all the necessary changes.
Details follow:
Matt Weatherford discovered that Likewise Open did not correctly check
password expiration for the local-provider account. A local attacker could
exploit this to log into a system they would otherwise not have access to.