CNNVD-202507-3030 Information

CNNVD ID

CNNVD-202507-3030

CVE-2025-6018

  • CNNVD Published: 2025-07-23

Description (Chinese)

Linux-pam是Linux团队的一款用于Linux的支持插拔式的系统身份验证软件。 Linux-pam存在安全漏洞,该漏洞源于权限管理不当,可能导致本地权限提升。

Description (English)

Linux-pam is a system authentication software for Linux support plug-in. There is a security loophole in Linux-pam, which stems from the mismanage of authority, which may lead to the upgrading of local authority.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-07-23

Last Modified

2026-02-24

References

https://bugzilla.redhat.com/show_bug.cgi?id=2372693 https://cdn2.qualys.com/2025/06/17/suse15-pam-udisks-lpe.txt https://bugzilla.suse.com/show_bug.cgi?id=1243226 https://access.redhat.com/security/cve/CVE-2025-6018 https://www.exploit-db.com/exploits/52386 https://vigilance.fr/vulnerability/pam-env-privilege-escalation-dated-18-06-2025-47465

Share on: