Vulnerability Bulletins

DSA-4025 libpam4j - security update

   
Affected software Debian
 
It was discovered that libpam4j, a Java library wrapper for theintegration of PAM did not call pam_acct_mgmt() during authentication.As such a user who has a valid password, but a deactivated or disabledaccount could still log in.

More info:

https://www.debian.org/security/2017/dsa-4025