CVE-2025-6020 Information

Description

A flaw was found in linux-pam. The module pam_namespace may use access user-controlled paths without proper protection allowing local users to elevate their privileges to root via multiple symlink attacks and race conditions.

Reference

http://www.openwall.com/lists/oss-security/2025/06/17/1 https://access.redhat.com/security/cve/CVE-2025-6020 https://bugzilla.redhat.com/show_bug.cgi?id=2372512

CNNVD-202506-1993 (Published: 2025-06-17)

Share on: