CVE-2008-1946: Medium severity gnu coreutils vulnerability
The default configuration of su in /etc/pam.d/su in GNU coreutils 5.2.1 allows local users to gain the privileges of a (1) locked or (2) expired account by entering the account name on the command line, related to improper use of the pamsucceedif.so module.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1946?
CVE-2008-1946 is considered to have a moderate severity rating due to its potential to allow local users to escalate privileges.
How do I fix CVE-2008-1946?
To fix CVE-2008-1946, you should update GNU coreutils to a version later than 5.2.1 where this vulnerability is addressed.
Who is affected by CVE-2008-1946?
CVE-2008-1946 affects local users of systems running GNU coreutils version 5.2.1 or earlier.
What is the nature of the vulnerability in CVE-2008-1946?
CVE-2008-1946 allows local users to gain privileges of locked or expired accounts due to improper configuration in PAM.
Is there a workaround for CVE-2008-1946?
A possible workaround for CVE-2008-1946 involves modifying the PAM configuration to restrict the use of the 'su' command.