CVE-2024-22365
06.02.2024, 08:15
linux-pam (aka Linux PAM) before 1.6.0 allows attackers to cause a denial of service (blocked login process) via mkfifo because the openat call (for protect_dir) lacks O_DIRECTORY.Enginsight
| Vendor | Product | Version |
|---|---|---|
| linux-pam | linux-pam | 𝑥 < 1.6.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| pam |
|
Common Weakness Enumeration
References