7.8 HIGH
- CVSS version: 3.1
- Attack vector (AV): LOCAL
- Attack complexity (AC): LOW
- Privileges required (PR): LOW
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
by @LeSuisse Activity log
- Created automatic suggestion
-
@LeSuisse
removed
69 packages
- ipam
- opam
- paml
- dspam
- pamix
- rspamd
- openpam
- pam_p11
- pam_u2f
- pamixer
- dopamine
- pam_krb5
- sbclPackages.cl-xmlspam
- python312Packages.pamela
- python313Packages.pamela
- stalwart-mail-spam-filter
- python312Packages.pypamtest
- python313Packages.pypamtest
- python312Packages.python-pam
- python313Packages.python-pam
- wordpressPackages.plugins.antispam-bee
- matrix-synapse-plugins.matrix-synapse-pam
- matrix-synapse-plugins.synapse-http-antispam
- matrix-synapse-plugins.matrix-synapse-mjolnir-antispam
- vscode-extensions.fabiospampinato.vscode-open-in-github
- pam_ssh_agent_auth
- rubyPackages.rpam2
- decode-spam-headers
- haskellPackages.pam
- luaPackages.lua-pam
- google-authenticator
- lua51Packages.lua-pam
- lua52Packages.lua-pam
- lua53Packages.lua-pam
- rubyPackages_3_1.rpam2
- rubyPackages_3_2.rpam2
- rubyPackages_3_3.rpam2
- rubyPackages_3_4.rpam2
- kdePackages.kwallet-pam
- opensmtpd-filter-rspamd
- python312Packages.pamqp
- python313Packages.pamqp
- apparmor-pam
- opam-publish
- pam-reattach
- spamassassin
- nss_pam_ldapd
- libpam-wrapper
- opam-installer
- pam-honeycreds
- rspamd-trainer
- pam_ussh
- pam_rssh
- pam_ldap
- pam
- ncpamixer
- opam2json
- pam_dp9ik
- pam_gnupg
- pam_mount
- pam_mysql
- pam_pgsql
- pamtester
- pam_ccreds
- pam_mktemp
- pam_rundir
- pam_tmpdir
- yubico-pam
- pam-watchid
- @LeSuisse accepted
- @LeSuisse published on GitHub
Linux-pam: incomplete fix for cve-2025-6020
A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.
References
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15827 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15828 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15827 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15828 vendor-advisory x_refsource_REDHAT
- RHSA-2025:16524 vendor-advisory x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15827 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15828 vendor-advisory x_refsource_REDHAT
- RHSA-2025:16524 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15827 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15828 vendor-advisory x_refsource_REDHAT
- RHSA-2025:16524 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15827 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15828 vendor-advisory x_refsource_REDHAT
- RHSA-2025:16524 vendor-advisory x_refsource_REDHAT
- RHSA-2025:18219 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15827 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15828 vendor-advisory x_refsource_REDHAT
- RHSA-2025:16524 vendor-advisory x_refsource_REDHAT
- RHSA-2025:17181 vendor-advisory x_refsource_REDHAT
- RHSA-2025:18219 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15827 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15828 vendor-advisory x_refsource_REDHAT
- RHSA-2025:16524 vendor-advisory x_refsource_REDHAT
- RHSA-2025:17181 vendor-advisory x_refsource_REDHAT
- RHSA-2025:18219 vendor-advisory x_refsource_REDHAT
- RHSA-2025:21885 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
- RHSA-2025:14557 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15099 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15100 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15101 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15102 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15103 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15104 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15105 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15106 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15107 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15709 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15827 vendor-advisory x_refsource_REDHAT
- RHSA-2025:15828 vendor-advisory x_refsource_REDHAT
- RHSA-2025:16524 vendor-advisory x_refsource_REDHAT
- RHSA-2025:17181 vendor-advisory x_refsource_REDHAT
- RHSA-2025:18219 vendor-advisory x_refsource_REDHAT
- RHSA-2025:21885 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-8941 x_refsource_REDHAT vdb-entry
- RHBZ#2388220 issue-tracking x_refsource_REDHAT
Affected products
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *
- *