A incorrect variable in a SUSE specific patch for pam_access rule matching in PAM 1.3.0 in openSUSE Leap 15.0 and SUSE Linux Enterprise 15 could lead to pam_access rules not being applied (fail open).
2018-11-27T13:29:00.207
2024-11-21T03:55:16.233
Modified
CVSSv3.0: 7.5 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | kernel | linux-pam | 1.3.0 | Yes |
Operating System | opensuse | leap | 15.0 | No |
Operating System | suse | linux_enterprise | 15.0 | No |