Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-8941

Опубликовано: 13 авг. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 7.8

Описание

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

РелизСтатусПримечание
devel

deferred

2025-11-24
esm-infra-legacy/trusty

deferred

2025-11-24
esm-infra/bionic

deferred

2025-11-24
esm-infra/focal

deferred

2025-11-24
esm-infra/xenial

deferred

2025-11-24
jammy

deferred

2025-11-24
noble

deferred

2025-11-24
plucky

deferred

2025-11-24
questing

deferred

2025-11-24
upstream

needs-triage

Показывать по

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
redhat
4 месяца назад

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

CVSS3: 7.8
nvd
4 месяца назад

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

CVSS3: 7.8
debian
4 месяца назад

A flaw was found in linux-pam. The pam_namespace module may improperly ...

CVSS3: 7.8
github
4 месяца назад

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

CVSS3: 7.8
fstec
4 месяца назад

Уязвимость компонента pam_namespace модуля аутентификации Linux-PAM, действующему удаленно, нарушителю повысить свои привилегии до уровня root

7.8 High

CVSS3