pam_console does not properly restore ownership for certain console devices when there are multiple users logged into the console and one user logs out, which might allow local users to gain privileges.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Enterprise_linux | Redhat | 4.4 (including) | 4.4 (including) |
Red Hat Enterprise Linux 3 | RedHat | cdrtools-8:2.01.0.a32-0.EL3.6 | * |
Red Hat Enterprise Linux 3 | RedHat | pam-0:0.75-72 | * |
Red Hat Enterprise Linux 4 | RedHat | pam-0:0.77-66.23 | * |
Red Hat Enterprise Linux 5 | RedHat | pam-0:0.99.6.2-3.26.el5 | * |