CVE-2018-6558
23.08.2018, 19:29
The pam_fscrypt module in fscrypt before 0.2.4 may incorrectly restore primary and supplementary group IDs to the values associated with the root user, which allows attackers to gain privileges via a successful login through certain applications that use Linux-PAM (aka pam).Enginsight
| Vendor | Product | Version |
|---|---|---|
| fscrypt | 𝑥 < 0.2.4 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References