Description
An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect password, even though a failure entry is recorded in the /var/log/messages file.
Published: 2019-02-08
Score: 8.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-17172 An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect password, even though a failure entry is recorded in the /var/log/messages file.
History

No history.

Subscriptions

Fedoraproject Fedora
Gsi-openssh Project Gsi-openssh
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-17T00:51:16.806Z

Reserved: 2019-02-08T00:00:00.000Z

Link: CVE-2019-7639

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-02-08T11:29:00.517

Modified: 2024-11-21T04:48:26.900

Link: CVE-2019-7639

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses