9.3
CVSSv2

CVE-2018-17953

Published: 27/11/2018 Updated: 07/11/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

A incorrect variable in a SUSE specific patch for pam_access rule matching in PAM 1.3.0 in openSUSE Leap 15.0 and SUSE Linux Enterprise 15 could lead to pam_access rules not being applied (fail open).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

kernel linux-pam 1.3.0

Vendor Advisories

A incorrect variable in a SUSE specific patch for pam_access rule matching in PAM 130 in openSUSE Leap 150 and SUSE Linux Enterprise 15 could lead to pam_access rules not being applied (fail open) ...