VDB
BDU%3A2025-07273
BDU%3A2025-07273
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость модуля pam_namespace модуля аутентификации Linux-PAM, позволяющая нарушителю повысить свои привилегии
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., ООО «Ред Софт», Сообщество свободного программного обеспечения, АО «СберТех», ООО «НЦПР» | Red Hat Enterprise Linux, РЕД ОС (запись в едином реестре российских программ №3751), Linux-PAM, Platform V SberLinux OS Server (запись в едином реестре российских программ №18785), МСВСфера |
Timeline
- Jun 23, 2025 CVE Published
- Nov 19, 2025 CVE Updated
References
- https://www.openwall.com/lists/oss-security/2025/06/17/1 url
- https://github.com/linux-pam/linux-pam/security/advisories/GHSA-f9p8-gjr4-j9gx url
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-pam-cve-2024-10963-cve-2025-60200/?sphrase_id=1314054 url
- https://github.com/linux-pam/linux-pam/commit/976c20079358d133514568fc7fd95c02df8b5773 advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2372512 url
- https://errata.msvsphere-os.ru/definition/9/INFCSA-2025:9526?lang=ru url
- https://github.com/linux-pam/linux-pam/commit/592d84e1265d04c3104acee815a503856db503a1 advisory
- https://github.com/linux-pam/linux-pam/releases/tag/v1.7.1 advisory
- https://access.redhat.com/security/cve/CVE-2025-6020 url
- https://man7.org/linux/man-pages/man8/pam_namespace.8.html url
- https://github.com/linux-pam/linux-pam/commit/475bd60c552b98c7eddb3270b0b4196847c0072e advisory