[ALSA-2026:56131] Moderate: pam security update
Type:
security
Severity:
moderate
Release date:
2026-08-18
Description:
Pluggable Authentication Modules (PAM) provide a system to set up authentication policies without the need to recompile programs to handle authentication. Security Fix(es): * linux-pam: Plaintext password recovery via timing discrepancy in pam_userdb module (CVE-2026-54411) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 pam-devel-1.3.1-40.el8_10.aarch64.rpm 2e8c1eedc2c9bfacbb78b092671b9fa8efe1db06e4ac8b3b73c3eb4af32b0572
aarch64 pam-1.3.1-40.el8_10.aarch64.rpm ba38e833cad5dea5dcc2a7211418a428ce3824336e9c2da1fb5280f085719151
i686 pam-1.3.1-40.el8_10.i686.rpm 3c5ac3c737858c5f15f438479dcab5d776d11f6daadec1c411e3f5e8388f8fc4
i686 pam-devel-1.3.1-40.el8_10.i686.rpm dc8ddd58a37db764a6e8b1922a065304d038dfc93561eff8f62fe7be902662b8
ppc64le pam-1.3.1-40.el8_10.ppc64le.rpm 49452f0c91bddcf73e72a275d3c94b675eec1e4dbe821b3ed114a8e78ccf434d
ppc64le pam-devel-1.3.1-40.el8_10.ppc64le.rpm 7af06de1307032441043301b187c8a0d22a187c1129858638c1376b836f801c0
s390x pam-1.3.1-40.el8_10.s390x.rpm 6520777350129132ceee0a45f10ff1730b3616f93518a5b62747abb53a97cc28
s390x pam-devel-1.3.1-40.el8_10.s390x.rpm b07879f66cb3a2a5feaf4d45015f002e74a4170e08c47a5d195e054067660989
x86_64 pam-devel-1.3.1-40.el8_10.x86_64.rpm a80d6b3e2f7c60bea40e3a5c9e008c6bdd579bcc6eae34cdd30021eda610e06b
x86_64 pam-1.3.1-40.el8_10.x86_64.rpm dd4c6a6d67e4b5c65a0cb0607c2841919a901810fcbf7d6f39ac93052742ef69
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.