Description: Mandriva has issued an update for util-linux. This fixes a security issue, which can be exploited by malicious users to bypass certain security restrictions.
The problem is that login omits "pam_acct_mgmt" and "chauth_tok" when authentication is skipped (e.g. with a valid Kerberos ticket) and can be exploited by malicious users to bypass certain access policies.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.