The libpam-tacplus PAM module for Debian GNU/Linux 10 (Buster) has been updated with a security fix for CVE-2016-20014 and missing zeroing when a structure is fixed:
ELA-1180-1 libpam-tacplus security update
ELA-1180-1 libpam-tacplus security update
ELA-1180-1 libpam-tacplus security update
Package : libpam-tacplus
Version : 1.3.8-2+deb10u2 (buster)
Related CVEs :
CVE-2016-20014
Missing zeroing if a structure has been fixed in libpam-tacplus, a PAM module for using TACACS+ as an authentication service.