Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-4422

Опубликовано: 06 мая 2016
Источник: debian
EPSS Низкий

Описание

The pam_sm_authenticate function in pam_sshauth.c in libpam-sshauth might allow context-dependent attackers to bypass authentication or gain privileges via a system user account.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libpam-sshauthfixed0.4.1-2package

Примечания

  • Introduced in: https://bazaar.launchpad.net/~ltsp-upstream/ltsp/libpam-sshauth/revision/93/src/pam_sshauth.c

  • Fixed in: https://bazaar.launchpad.net/~ltsp-upstream/ltsp/libpam-sshauth/revision/114

  • https://www.openwall.com/lists/oss-security/2016/05/01/2

EPSS

Процентиль: 77%
0.01803
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 10 лет назад

The pam_sm_authenticate function in pam_sshauth.c in libpam-sshauth might allow context-dependent attackers to bypass authentication or gain privileges via a system user account.

CVSS3: 9.8
nvd
больше 10 лет назад

The pam_sm_authenticate function in pam_sshauth.c in libpam-sshauth might allow context-dependent attackers to bypass authentication or gain privileges via a system user account.

CVSS3: 9.8
github
больше 4 лет назад

The pam_sm_authenticate function in pam_sshauth.c in libpam-sshauth might allow context-dependent attackers to bypass authentication or gain privileges via a system user account.

EPSS

Процентиль: 77%
0.01803
Низкий