Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-3238

Опубликовано: 24 авг. 2015
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5.8
CVSS3: 6.5

Описание

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

РелизСтатусПримечание
devel

released

1.1.8-3.2ubuntu2
esm-infra-legacy/trusty

released

1.1.8-1ubuntu2.1
esm-infra/xenial

released

1.1.8-3.2ubuntu2
precise

released

1.1.3-7ubuntu2.1
precise/esm

not-affected

1.1.3-7ubuntu2.1
trusty

released

1.1.8-1ubuntu2.1
trusty/esm

released

1.1.8-1ubuntu2.1
upstream

released

1.1.8-3.2
utopic

ignored

end of life
vivid

ignored

end of life

Показывать по

EPSS

Процентиль: 87%
0.0361
Низкий

5.8 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

redhat
около 10 лет назад

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

CVSS3: 6.5
nvd
около 10 лет назад

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

CVSS3: 6.5
debian
около 10 лет назад

The _unix_run_helper_binary function in the pam_unix module in Linux-P ...

suse-cvrf
больше 8 лет назад

Security update for pam

CVSS3: 6.5
github
больше 3 лет назад

The _unix_run_helper_binary function in the pam_unix module in Linux-PAM (aka pam) before 1.2.1, when unable to directly access passwords, allows local users to enumerate usernames or cause a denial of service (hang) via a large password.

EPSS

Процентиль: 87%
0.0361
Низкий

5.8 Medium

CVSS2

6.5 Medium

CVSS3