RedHat has reported that under some network configurations the PAM (Pluggable Authentication Modules) will fail to lock access to disabled NIS accounts.
Credit:
This information has been provided by: Cristian Gafton.
The PAM packages shipped with Red Hat Linux 6.1/Intel allow access to locked NIS accounts on certain network configurations. If you have a Red Hat Linux 6.1 workstation, performing authentication against an NIS server then you are at risk. Red Hat recommends that you upgrade the PAM packages on all Red Hat Linux 6.1 workstations to the versions announced in this advisory.
Previous versions of Red Hat Linux are not affected by this problem.
Vulnerable systems:
Red Hat Linux 6.1 for i386
RPMs:
For each RPM for your particular architecture, run:
rpm -Uvh
Where filename is the name of the RPM.