CVE-2022-28321: Critical severity suse pam vulnerability
The Linux-PAM package before 1.5.2-6.1 for openSUSE Tumbleweed allows authentication bypass for SSH logins. The pamaccess.so module doesn't correctly restrict login if a user tries to connect from an IP address that is not resolvable via DNS. In such conditions, a user with denied access to a machine can still get access. NOTE: the relevance of this issue is largely limited to openSUSE Tumbleweed and openSUSE Factory; it does not affect Linux-PAM upstream.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-28321?
The severity of CVE-2022-28321 is critical.
How does CVE-2022-28321 allow authentication bypass for SSH logins?
CVE-2022-28321 allows authentication bypass for SSH logins by not correctly restricting login if a user tries to connect from an IP address that is not resolvable via DNS.
What is Linux-PAM package before 1.5.2-6.1 affected by CVE-2022-28321?
The Linux-PAM package before 1.5.2-6.1 for openSUSE Tumbleweed is affected by CVE-2022-28321.
How can I fix CVE-2022-28321 in Linux-PAM package?
To fix CVE-2022-28321 in the Linux-PAM package, update to version 1.5.2-6.1 or later.
Where can I find more information about CVE-2022-28321?
You can find more information about CVE-2022-28321 at the following references: [1] [2] [3].