CVE-2024-9312
10.10.2024, 14:15
Authd, through version 0.3.6, did not sufficiently randomize user IDs to prevent collisions. A local attacker who can register user names could spoof another user's ID and gain their privileges.
Vendor | Product | Version |
---|---|---|
canonical | authd | 𝑥 < 0.3.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration