Unrated severityNVD Advisory· Published May 8, 2014· Updated Jun 17, 2026
CVE-2013-7041
CVE-2013-7041
Description
The pam_userdb module for Pam uses a case-insensitive method to compare hashed passwords, which makes it easier for attackers to guess the password via a brute force attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- osv-coords3 versionspkg:rpm/suse/pam&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4pkg:rpm/suse/pam&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4pkg:rpm/suse/pam&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4
< 1.1.5-0.17.2+ 2 more
- (no CPE)range: < 1.1.5-0.17.2
- (no CPE)range: < 1.1.5-0.17.2
- (no CPE)range: < 1.1.5-0.17.2
- cpe:2.3:a:cristian_gafton:pam_userdb:-:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
9- www.openwall.com/lists/oss-security/2013/12/09/16nvd
- www.openwall.com/lists/oss-security/2013/12/09/5nvd
- www.securityfocus.com/bid/64180nvd
- www.ubuntu.com/usn/USN-2935-1nvd
- www.ubuntu.com/usn/USN-2935-2nvd
- www.ubuntu.com/usn/USN-2935-3nvd
- bugs.debian.org/cgi-bin/bugreport.cginvd
- bugzilla.redhat.com/show_bug.cginvd
- security.gentoo.org/glsa/201605-05nvd
News mentions
0No linked articles in our index yet.