Filtered by vendor Andrew Morgan Subscriptions
Filtered by product Linux Pam Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2003-0388 2 Andrew Morgan, Redhat 2 Linux Pam, Enterprise Linux 2024-08-08 N/A
pam_wheel in Linux-PAM 0.78, with the trust option enabled and the use_uid option disabled, allows local users to spoof log entries and gain privileges by causing getlogin() to return a spoofed user name.
CVE-2007-0003 1 Andrew Morgan 1 Linux Pam 2024-08-07 N/A
pam_unix.so in Linux-PAM 0.99.7.0 allows context-dependent attackers to log into accounts whose password hash, as stored in /etc/passwd or /etc/shadow, has only two characters.