Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-4708

Опубликовано: 27 сент. 2010
Источник: redhat
CVSS2: 4.6
EPSS Низкий

Описание

The pam_env module in Linux-PAM (aka pam) 1.1.2 and earlier reads the .pam_environment file in a user's home directory, which might allow local users to run programs with an unintended environment by executing a program that relies on the pam_env PAM check.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4pamNot affected
Red Hat Enterprise Linux 5pamNot affected
Red Hat Enterprise Linux 6pamFixedRHSA-2010:089116.11.2010

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=672489pam: pam_env: reading ~/.pam_environment is security risk

EPSS

Процентиль: 15%
0.00048
Низкий

4.6 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 14 лет назад

The pam_env module in Linux-PAM (aka pam) 1.1.2 and earlier reads the .pam_environment file in a user's home directory, which might allow local users to run programs with an unintended environment by executing a program that relies on the pam_env PAM check.

nvd
больше 14 лет назад

The pam_env module in Linux-PAM (aka pam) 1.1.2 and earlier reads the .pam_environment file in a user's home directory, which might allow local users to run programs with an unintended environment by executing a program that relies on the pam_env PAM check.

debian
больше 14 лет назад

The pam_env module in Linux-PAM (aka pam) 1.1.2 and earlier reads the ...

github
около 3 лет назад

The pam_env module in Linux-PAM (aka pam) 1.1.2 and earlier reads the .pam_environment file in a user's home directory, which might allow local users to run programs with an unintended environment by executing a program that relies on the pam_env PAM check.

oracle-oval
больше 14 лет назад

ELSA-2010-0891: pam security update (MODERATE)

EPSS

Процентиль: 15%
0.00048
Низкий

4.6 Medium

CVSS2