CVE Vulnerabilities

CVE-2017-6967

Improper Authentication

Published: Mar 17, 2017 | Modified: Apr 20, 2025
CVSS 3.x
7.3
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

xrdp 0.9.1 calls the PAM function auth_start_session() in an incorrect location, leading to PAM session modules not being properly initialized, with a potential consequence of incorrect configurations or elevation of privileges, aka a pam_limits.so bypass.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

NameVendorStart VersionEnd Version
XrdpNeutrinolabs0.9.1 (including)0.9.1 (including)
XrdpUbuntuartful*
XrdpUbuntuesm-apps/xenial*
XrdpUbuntuesm-infra-legacy/trusty*
XrdpUbuntuprecise*
XrdpUbuntutrusty*
XrdpUbuntutrusty/esm*
XrdpUbuntuupstream*
XrdpUbuntuxenial*
XrdpUbuntuyakkety*
XrdpUbuntuzesty*

Potential Mitigations

References