CVE-2025-8941 Information
Aug 14, 2025
cve
Description
A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a ## CVSS Vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
https://access.redhat.com/security/cve/CVE-2025-8941 https://bugzilla.redhat.com/show_bug.cgi?id=2388220
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.8
Related CNNVD
CNNVD-202508-1387 (Published: 2025-08-13)
Share on: