A flaw was found in the temporary user record that authd uses in the pre-auth NSS. As a result, a user login for the first time will be considered to be part of the root group in the context of that SSH session.
References
Configurations
No configuration.
History
17 Jun 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.5 |
16 Jun 2025, 12:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-16 12:15
Updated : 2025-06-17 15:15
NVD link : CVE-2025-5689
Mitre link : CVE-2025-5689
CVE.ORG link : CVE-2025-5689
JSON object : View
Products Affected
No product.
CWE
No CWE.