Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-3232

Опубликовано: 17 сент. 2009
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 9.3

Описание

pam-auth-update for PAM, as used in Ubuntu 8.10 and 9.4, and Debian GNU/Linux, does not properly handle an "empty selection" for system authentication modules in certain rare configurations, which causes any attempt to be successful and allows remote attackers to bypass authentication.

РелизСтатусПримечание
dapper

not-affected

devel

not-affected

1.0.1-10ubuntu1
hardy

not-affected

intrepid

released

1.0.1-4ubuntu5.6
jaunty

released

1.0.1-9ubuntu1.1
upstream

released

1.0.1-10

Показывать по

EPSS

Процентиль: 67%
0.00539
Низкий

9.3 Critical

CVSS2

Связанные уязвимости

nvd
больше 16 лет назад

pam-auth-update for PAM, as used in Ubuntu 8.10 and 9.4, and Debian GNU/Linux, does not properly handle an "empty selection" for system authentication modules in certain rare configurations, which causes any attempt to be successful and allows remote attackers to bypass authentication.

debian
больше 16 лет назад

pam-auth-update for PAM, as used in Ubuntu 8.10 and 9.4, and Debian GN ...

github
больше 3 лет назад

pam-auth-update for PAM, as used in Ubuntu 8.10 and 9.4, and Debian GNU/Linux, does not properly handle an "empty selection" for system authentication modules in certain rare configurations, which causes any attempt to be successful and allows remote attackers to bypass authentication.

EPSS

Процентиль: 67%
0.00539
Низкий

9.3 Critical

CVSS2