Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-8941

Опубликовано: 13 авг. 2025
Источник: debian
EPSS Низкий

Описание

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pamundeterminedpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2388220#c1

EPSS

Процентиль: 6%
0.00026
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
4 месяца назад

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

CVSS3: 7.8
redhat
4 месяца назад

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

CVSS3: 7.8
nvd
4 месяца назад

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

CVSS3: 7.8
github
4 месяца назад

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

CVSS3: 7.8
fstec
4 месяца назад

Уязвимость компонента pam_namespace модуля аутентификации Linux-PAM, действующему удаленно, нарушителю повысить свои привилегии до уровня root

EPSS

Процентиль: 6%
0.00026
Низкий