« List of all CVEs

CVE-2010-4708

Published: 1/24/2011 Last updated: 8/7/2024 Reserved: 1/24/2011

The pam_env module in Linux-PAM (aka pam) 1.1.2 and earlier reads the .pam_environment file in a user's home directory, which might allow local users to run programs with an unintended environment by executing a program that relies on the pam_env PAM check.

CNA assigner: mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca) Requested by: n/a

Opam packages affected (2)

conf-pam pam

Products affected (1)

Product Vendor Version
n/a n/a Partnumber 2086502 with firmware version < 1.13.4

References (16)