← Back

CVE-2010-4707

nvd nist
Published: Jan 24, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.9
Vector
AV:L/AC:L/Au:N/C:C/I:N/A:N
Exploitability: 3.9 / Impact: 6.9
Source: NVD

Description

The check_acl function in pam_xauth.c in the pam_xauth module in Linux-PAM (aka pam) 1.1.2 and earlier does not verify that a certain ACL file is a regular file, which might allow local users to cause a denial of service (resource consumption) via a special file.

Affected (24)

Products: Linux Pam: Linux Pam
1 product
Linux Pam
Configuration A
24 vulnerable
Vulnerable SoftwareAffected Versions
Linux Pam
Up to 1.1.2
Version 0.99.1.0
Version 0.99.10.0
Version 0.99.2.0
Version 0.99.2.1
Version 0.99.3.0
Version 0.99.4.0
Version 0.99.5.0
Version 0.99.6.0
Version 0.99.6.1
Version 0.99.6.2
Version 0.99.6.3
Version 0.99.7.0
Version 0.99.7.1
Version 0.99.8.0
Version 0.99.8.1
Version 0.99.9.0
Version 1.0.0
Version 1.0.1
Version 1.0.2
Version 1.0.3
Version 1.0.4
Version 1.1.0
Version 1.1.1

Related CWEs

Timeline

No history available yet.