by @LeSuisse Activity log
- Created automatic suggestion
-
@LeSuisse
removed
69 packages
- ipam
- opam
- paml
- dspam
- pamix
- rspamd
- openpam
- pam_p11
- pam_u2f
- pamixer
- dopamine
- pam_krb5
- sbclPackages.cl-xmlspam
- python312Packages.pamela
- python313Packages.pamela
- stalwart-mail-spam-filter
- python312Packages.pypamtest
- python313Packages.pypamtest
- python312Packages.python-pam
- python313Packages.python-pam
- wordpressPackages.plugins.antispam-bee
- matrix-synapse-plugins.matrix-synapse-pam
- matrix-synapse-plugins.synapse-http-antispam
- matrix-synapse-plugins.matrix-synapse-mjolnir-antispam
- vscode-extensions.fabiospampinato.vscode-open-in-github
- pam_ssh_agent_auth
- rubyPackages.rpam2
- decode-spam-headers
- haskellPackages.pam
- luaPackages.lua-pam
- google-authenticator
- lua51Packages.lua-pam
- lua52Packages.lua-pam
- lua53Packages.lua-pam
- rubyPackages_3_1.rpam2
- rubyPackages_3_2.rpam2
- rubyPackages_3_3.rpam2
- rubyPackages_3_4.rpam2
- kdePackages.kwallet-pam
- opensmtpd-filter-rspamd
- python312Packages.pamqp
- python313Packages.pamqp
- apparmor-pam
- opam-publish
- pam-reattach
- spamassassin
- nss_pam_ldapd
- libpam-wrapper
- opam-installer
- pam-honeycreds
- rspamd-trainer
- pam_ussh
- pam_rssh
- pam_ldap
- pam
- ncpamixer
- opam2json
- pam_dp9ik
- pam_gnupg
- pam_mount
- pam_mysql
- pam_pgsql
- pamtester
- pam_ccreds
- pam_mktemp
- pam_rundir
- pam_tmpdir
- yubico-pam
- pam-watchid
- @LeSuisse accepted
- @LeSuisse published on GitHub
Linux-pam: incomplete fix for cve-2025-6020
A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.
References
Affected products
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *