The (1) pam_env and (2) pam_mail modules in Linux-PAM (aka pam) before 1.1.2 use root privileges during read access to files and directories that belong to arbitrary user accounts, which might allow local users to obtain sensitive information by leveraging this filesystem activity, as demonstrated by a symlink attack on the .pam_environment file in a user's home directory.
CVSS Details
- CVSS 3.1 Base Score: 5.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade pam-develUpgrade pam | Dec 1, 2016 | Jan 24, 2011 |
| Debian | — | Upgrade pam | Jul 30, 2024 | Jan 24, 2011 |
| Gentoo Linux | — | Upgrade sys-libs/pam. | Oct 30, 2017 | Jan 24, 2011 |
| Oracle_linux | — | Upgrade pam-develUpgrade pam | Oct 16, 2024 | Jan 24, 2011 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Sep 21, 2010 |
| Ubuntu | — | Upgrade libpam-modules | Nov 8, 2024 | Jan 24, 2011 |
| Vmsa 2011 0004 | — | Upgrade VMware ESX 4.1 to build number 381591Upgrade VMware ESX 4.0 to build number 360236 | Mar 10, 2011 | Jan 24, 2011 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub