Bug 2372693 (CVE-2025-6018) - CVE-2025-6018 pam-config: LPE from unprivileged to allow_active in PAM
Summary: CVE-2025-6018 pam-config: LPE from unprivileged to allow_active in PAM
Keywords:
Status: NEW
Alias: CVE-2025-6018
Deadline: 2025-06-17
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2025-06-13 14:36 UTC by OSIDB Bzimport
Modified: 2025-06-18 17:04 UTC (History)
6 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2025-06-13 14:36:40 UTC
an LPE vulnerability (a Local Privilege Escalation) in the PAM configuration: an unprivileged local attacker (e.g., an attacker who logs in via sshd) can obtain the privileges of a physical "allow_active" user (i.e., a user who is physically sitting in front of the computer) and can therefore perform all the "allow_active yes" polkit actions that are normally reserved for physical users.


Note You need to log in before you can comment on or make changes to this bug.