Количество 10
Количество 10
BDU:2025-02595
Уязвимость функции pam_sm_authenticate() PAM-модуля Yubico pam-u2f, позволяющая нарушителю повысить свои привилегии
ROS-20251014-02
Уязвимость pam-u2f
CVE-2025-23013
In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Authentication Module (PAM) that can be deployed to support authentication using a YubiKey or other FIDO compliant authenticators on macOS or Linux. This software package has an issue that allows for an authentication bypass in some configurations. An attacker would require the ability to access the system as an unprivileged user. Depending on the configuration, the attacker may also need to know the user's password.
CVE-2025-23013
In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Authentication Module (PAM) that can be deployed to support authentication using a YubiKey or other FIDO compliant authenticators on macOS or Linux. This software package has an issue that allows for an authentication bypass in some configurations. An attacker would require the ability to access the system as an unprivileged user. Depending on the configuration, the attacker may also need to know the user's password.
CVE-2025-23013
In Yubico pam-u2f before 1.3.1, local privilege escalation can sometim ...
SUSE-SU-2025:0200-1
Security update for pam_u2f
SUSE-SU-2025:0198-1
Security update for pam_u2f
SUSE-SU-2025:0192-1
Security update for pam_u2f
SUSE-SU-2025:0167-1
Security update for pam_u2f
GHSA-wwr4-cj7g-985f
In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Authentication Module (PAM) that can be deployed to support authentication using a YubiKey or other FIDO compliant authenticators on macOS or Linux. This software package has an issue that allows for an authentication bypass in some configurations. An attacker would require the ability to access the system as an unprivileged user. Depending on the configuration, the attacker may also need to know the user's password.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2025-02595 Уязвимость функции pam_sm_authenticate() PAM-модуля Yubico pam-u2f, позволяющая нарушителю повысить свои привилегии | CVSS3: 7.8 | 0% Низкий | около 1 года назад | |
ROS-20251014-02 Уязвимость pam-u2f | CVSS3: 7.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2025-23013 In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Authentication Module (PAM) that can be deployed to support authentication using a YubiKey or other FIDO compliant authenticators on macOS or Linux. This software package has an issue that allows for an authentication bypass in some configurations. An attacker would require the ability to access the system as an unprivileged user. Depending on the configuration, the attacker may also need to know the user's password. | 0% Низкий | 11 месяцев назад | ||
CVE-2025-23013 In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Authentication Module (PAM) that can be deployed to support authentication using a YubiKey or other FIDO compliant authenticators on macOS or Linux. This software package has an issue that allows for an authentication bypass in some configurations. An attacker would require the ability to access the system as an unprivileged user. Depending on the configuration, the attacker may also need to know the user's password. | 0% Низкий | 11 месяцев назад | ||
CVE-2025-23013 In Yubico pam-u2f before 1.3.1, local privilege escalation can sometim ... | 0% Низкий | 11 месяцев назад | ||
SUSE-SU-2025:0200-1 Security update for pam_u2f | 0% Низкий | 10 месяцев назад | ||
SUSE-SU-2025:0198-1 Security update for pam_u2f | 0% Низкий | 10 месяцев назад | ||
SUSE-SU-2025:0192-1 Security update for pam_u2f | 0% Низкий | 11 месяцев назад | ||
SUSE-SU-2025:0167-1 Security update for pam_u2f | 0% Низкий | 11 месяцев назад | ||
GHSA-wwr4-cj7g-985f In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Authentication Module (PAM) that can be deployed to support authentication using a YubiKey or other FIDO compliant authenticators on macOS or Linux. This software package has an issue that allows for an authentication bypass in some configurations. An attacker would require the ability to access the system as an unprivileged user. Depending on the configuration, the attacker may also need to know the user's password. | 0% Низкий | 11 месяцев назад |
Уязвимостей на страницу