CVE-2026-3184

EUVD-2026-18817
A flaw was found in util-linux. Improper hostname canonicalization in the `login(1)` utility, when invoked with the `-h` option, can modify the supplied remote hostname before setting `PAM_RHOST`. A remote attacker could exploit this by providing a specially crafted hostname, potentially bypassing host-based Pluggable Authentication Modules (PAM) access control rules that rely on fully qualified domain names. This could lead to unauthorized access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.7 LOW
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 24%
Affected Products (NVD)
VendorProductVersion
kernelutil-linux
-
redhathardened_images
-
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
util-linux
bookworm
ignored
bookworm (security)
vulnerable
bullseye
ignored
bullseye (security)
vulnerable
forky
vulnerable
sid
vulnerable
trixie
no-dsa
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libblkid-devel
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libblkid-devel-static
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libblkid1
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libblkid1-32bit
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libfdisk-devel
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libfdisk1
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libmount-devel
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libmount1
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libmount1-32bit
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libsmartcols-devel
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libsmartcols1
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libuuid-devel
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libuuid-devel-static
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libuuid1
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
libuuid1-32bit
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
python-libmount
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
util-linux
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
util-linux-extra
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
util-linux-lang
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
util-linux-systemd
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
util-linux-tty-tools
suse enterprise desktop 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise sap 15 SP7
2.40.4-150700.4.10.1
fixed
suse enterprise server 15 SP7
2.40.4-150700.4.10.1
fixed
uuidd
suse enterprise server 12 SP3
2.29.2-3.48.1
fixed
suse enterprise server 15 SP4
2.37.2-150400.8.41.1
fixed