CVE-2008-1946
EUVD-2008-194528.07.2008, 17:41
The default configuration of su in /etc/pam.d/su in GNU coreutils 5.2.1 allows local users to gain the privileges of a (1) locked or (2) expired account by entering the account name on the command line, related to improper use of the pam_succeed_if.so module.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gnu | coreutils | 5.2.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References