CVE Vulnerabilities

CVE-2008-4313

Published: Nov 27, 2008 | Modified: Sep 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A certain Red Hat patch for tog-pegasus in OpenGroup Pegasus 2.7.0 does not properly configure the PAM tty name, which allows remote authenticated users to bypass intended access restrictions and send requests to OpenPegasus WBEM services.

Affected Software

Name Vendor Start Version End Version
Enterprise_linux Redhat 5.0 (including) 5.0 (including)
Enterprise_linux_desktop Redhat 5.0 (including) 5.0 (including)
Red Hat Enterprise Linux 5 RedHat tog-pegasus-2:2.7.0-2.el5_2.1 *

References