[jboss-jira] [JBoss JIRA] (SECURITY-782) EXTC with timeout not properly detected by loadPassword utility in login modules

Peter Skopek (JIRA) issues at jboss.org
Wed Jan 8 08:52:34 EST 2014


Peter Skopek created SECURITY-782:
-------------------------------------

             Summary: EXTC with timeout not properly detected by loadPassword utility in login modules
                 Key: SECURITY-782
                 URL: https://issues.jboss.org/browse/SECURITY-782
             Project: PicketBox 
          Issue Type: Bug
      Security Level: Public (Everyone can see)
          Components: JBossSX
    Affects Versions: PicketBox_4_0_20.Beta2
            Reporter: Peter Skopek
            Assignee: Peter Skopek


Using cached external command with time out to get user credential in login modules if not properly detected as to call the external command.
Example: {EXTC:1000}/usr/bin/getmysecretpwd


--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira


More information about the jboss-jira mailing list