Описание
A vulnerability was found in PAM. The secret information is stored in memory, where the attacker can trigger the victim program to execute by sending characters to its standard input (stdin). As this occurs, the attacker can train the branch predictor to execute an ROP chain speculatively. This flaw could result in leaked passwords, such as those found in /etc/shadow while performing authentications.
Отчет
The PAM package as shipped in Red Hat Enterprise Linux 8 and 9 is not vulnerable to this vulnerability if SELinux is in Enforcing mode in the system.
Меры по смягчению последствий
This vulnerability is mitigated if SELinux is in Enforcing mode.
To verify if SELinux is in Enforcing mode, the output of the getenforce
command will return `Enforcing', see the example below:
To more information about SELinux, specifically how to set it to Enforcing mode, see the links below. https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/8/html-single/using_selinux/index#changing-to-enforcing-mode_changing-selinux-states-and-modes https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html-single/using_selinux/index#changing-to-enforcing-mode_changing-selinux-states-and-modes
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 10 | pam | Not affected | ||
Red Hat Enterprise Linux 7 | pam | Out of support scope | ||
Red Hat Enterprise Linux 8 | pam | Fixed | RHSA-2024:10379 | 26.11.2024 |
Red Hat Enterprise Linux 9 | pam | Fixed | RHSA-2024:11250 | 17.12.2024 |
Red Hat Enterprise Linux 9 | pam | Fixed | RHSA-2024:11250 | 17.12.2024 |
Red Hat Enterprise Linux 9.4 Extended Update Support | pam | Fixed | RHSA-2024:9941 | 19.11.2024 |
Показывать по
Дополнительная информация
Статус:
EPSS
4.7 Medium
CVSS3
Связанные уязвимости
A vulnerability was found in PAM. The secret information is stored in memory, where the attacker can trigger the victim program to execute by sending characters to its standard input (stdin). As this occurs, the attacker can train the branch predictor to execute an ROP chain speculatively. This flaw could result in leaked passwords, such as those found in /etc/shadow while performing authentications.
A vulnerability was found in PAM. The secret information is stored in memory, where the attacker can trigger the victim program to execute by sending characters to its standard input (stdin). As this occurs, the attacker can train the branch predictor to execute an ROP chain speculatively. This flaw could result in leaked passwords, such as those found in /etc/shadow while performing authentications.
A vulnerability was found in PAM. The secret information is stored in ...
EPSS
4.7 Medium
CVSS3