linux-pam (aka Linux PAM) before 1.6.0 allows attackers to cause a denial of service (blocked login process) via mkfifo because the openat call (for protect_dir) lacks O_DIRECTORY.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-02-06T00:00:00
Updated: 2024-08-01T22:43:34.704Z
Reserved: 2024-01-09T00:00:00
Link: CVE-2024-22365
Vulnrichment
Updated: 2024-08-01T22:43:34.704Z
NVD
Status : Modified
Published: 2024-02-06T08:15:52.203
Modified: 2024-11-21T08:56:07.760
Link: CVE-2024-22365
Redhat