CVE-2025-5689 Information

Description

A flaw was found in the temporary user record that authd uses in the pre-auth NSS. As a result a user login for the first time will be considered to be part of the root group in the context of that SSH session.

Reference

https://github.com/ubuntu/authd/security/advisories/GHSA-g8qw-mgjx-rwjr

CNNVD-202506-1886 (Published: 2025-06-16)

Share on: