CVE Vulnerabilities

CVE-2019-16729

Published: Sep 24, 2019 | Modified: Feb 27, 2023
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

pam-python before 1.0.7-1 has an issue in regard to the default environment variable handling of Python, which could allow for local root escalation in certain PAM setups.

Affected Software

Name Vendor Start Version End Version
Pam-python Pam-python_project * 1.0.7-1 (excluding)
Pam-python Ubuntu bionic *
Pam-python Ubuntu disco *
Pam-python Ubuntu eoan *
Pam-python Ubuntu trusty *
Pam-python Ubuntu xenial *

References