Package name
Advisory ID
Affected versions
10.2 i586 , 10.2 x86_64

Problem description

This package fixes a bug that prevents password changes via pam_ldap from succeeding when configured to use the password type "exop" (via a "pam_password exop" entry in /etc/ldap.conf or the configuration file provided as an option in the pam configuration file) against a server which doens't allow exop password changes which include the old password (such as OpenLDAP 2.1.x). The update applies the changes made between pam_ldap versions 174 and 175, and changes the behaviour for the "exop" password method to not send the old password. The behaviour that was exhibited by the original package may be obtained by changing the password method to "exop_send_old".

Updated packages

