BDU:2020-01330BDU:2020-01330HIGH7.8Уязвимость PAM-модуля pam-python интерпретатора языка программирования Python, позволяющая нарушителю повысить свои привилегииОпубликовано: 2020-04-06CVSS 3.xВЫСОКАЯ 7.8CVSS:3.x/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HCVSS 2.0СРЕДНЯЯ 6.8CVSS:2.0/AV:L/AC:L/Au:S/C:C/I:C/A:CСсылкиCVE-2019-16729
CVE-2019-16729CVE-2019-16729HIGH7.8pam-python before 1.0.7-1 has an issue in regard to the default environment variable handling of Python, which could allow for local root escalation in certain PAM setups.Опубликовано: 2019-09-24Изменено: 2024-11-21CVSS 2.0ВЫСОКАЯ 7.2CVSS:2.0/AV:L/AC:L/Au:N/C:C/I:C/A:CCVSS 3.xВЫСОКАЯ 7.8CVSS:3.x/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HСсылкиhttps://bugzilla.suse.com/show_bug.cgi?id=1150510#c1https://lists.debian.org/debian-lts-announce/2019/11/msg00020.htmlhttps://sourceforge.net/p/pam-python/code/ci/0247ab687b4347cc52859ca461fb0126dd7e2ebe/https://tracker.debian.org/news/1066790/accepted-pam-python-107-1-source-amd64-all-into-unstable/https://usn.ubuntu.com/4552-1/https://usn.ubuntu.com/4552-2/https://www.debian.org/security/2019/dsa-4555https://bugzilla.suse.com/show_bug.cgi?id=1150510#c1https://lists.debian.org/debian-lts-announce/2019/11/msg00020.htmlhttps://sourceforge.net/p/pam-python/code/ci/0247ab687b4347cc52859ca461fb0126dd7e2ebe/https://tracker.debian.org/news/1066790/accepted-pam-python-107-1-source-amd64-all-into-unstable/https://usn.ubuntu.com/4552-1/https://usn.ubuntu.com/4552-2/https://www.debian.org/security/2019/dsa-4555