CVE Vulnerabilities

CVE-2017-6967

Improper Authentication

Published: Mar 17, 2017 | Modified: Jul 08, 2020
CVSS 3.x
7.3
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

xrdp 0.9.1 calls the PAM function auth_start_session() in an incorrect location, leading to PAM session modules not being properly initialized, with a potential consequence of incorrect configurations or elevation of privileges, aka a pam_limits.so bypass.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Xrdp Neutrinolabs 0.9.1 (including) 0.9.1 (including)
Xrdp Ubuntu artful *
Xrdp Ubuntu esm-apps/xenial *
Xrdp Ubuntu precise *
Xrdp Ubuntu trusty *
Xrdp Ubuntu trusty/esm *
Xrdp Ubuntu upstream *
Xrdp Ubuntu xenial *
Xrdp Ubuntu yakkety *
Xrdp Ubuntu zesty *

Potential Mitigations

References