CVE-2010-3431: Low severity Linux-PAM Linux-PAM vulnerability
The privilege-dropping implementation in the (1) pamenv and (2) pammail modules in Linux-PAM (aka pam) 1.1.2 does not check the return value of the setfsuid system call, which might allow local users to obtain sensitive information by leveraging an unintended uid, as demonstrated by a symlink attack on the .pamenvironment file in a user's home directory. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-3435.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3431?
CVE-2010-3431 is classified as a medium severity vulnerability due to the potential for local users to access sensitive information.
How do I fix CVE-2010-3431?
To fix CVE-2010-3431, update to a patched version of Linux-PAM that addresses this vulnerability.
What components are affected by CVE-2010-3431?
CVE-2010-3431 specifically affects the pam_env and pam_mail modules in Linux-PAM version 1.1.2.
Who is at risk from CVE-2010-3431?
Local users on systems running the vulnerable version of Linux-PAM are at risk from CVE-2010-3431.
Can CVE-2010-3431 lead to privilege escalation?
CVE-2010-3431 does not directly lead to privilege escalation but can allow unintended user access to sensitive information.