Security patch available for the cyrus-sasl packages
8 Nov. 2000
Summary
An error existed in the authorization checks in the version of cyrus-sasl shipped with Red Hat Linux 7. Due to this bug, users who have been successfully authenticated could be allowed access to resources even if the system had been configured to deny these users' access.
Versions of cyrus-sasl included in previous releases of Red Hat Power Tools did not implement this function and are not affected by this bug.
Credit:
The information has been provided by RedHat Bugzilla.