Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-3238

Опубликовано: 24 авг. 2015
Источник: debian
EPSS Низкий

Описание

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pamfixed1.1.8-3.2package
pamfixed1.1.8-3.1+deb8u1jessiepackage
pamno-dsawheezypackage
pamno-dsasqueezepackage

Примечания

  • https://git.fedorahosted.org/cgit/linux-pam.git/commit/?id=e89d4c97385ff8180e6e81e84c5aa745daf28a79

  • https://www.redhat.com/archives/pam-list/2015-June/msg00001.html

EPSS

Процентиль: 87%
0.0361
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 10 лет назад

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

redhat
около 10 лет назад

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

CVSS3: 6.5
nvd
около 10 лет назад

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

suse-cvrf
больше 8 лет назад

Security update for pam

CVSS3: 6.5
github
больше 3 лет назад

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

EPSS

Процентиль: 87%
0.0361
Низкий