CVE Vulnerabilities

CVE-2008-4313

Published: Nov 27, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A certain Red Hat patch for tog-pegasus in OpenGroup Pegasus 2.7.0 does not properly configure the PAM tty name, which allows remote authenticated users to bypass intended access restrictions and send requests to OpenPegasus WBEM services.

Affected Software

NameVendorStart VersionEnd Version
Enterprise_linuxRedhat5.0 (including)5.0 (including)
Enterprise_linux_desktopRedhat5.0 (including)5.0 (including)
Red Hat Enterprise Linux 5RedHattog-pegasus-2:2.7.0-2.el5_2.1*

References