[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2017-6967 -- xrdp

ID: oval:org.secpod.oval:def:1901565Date: (C)2019-03-05   (M)2023-12-20
Class: VULNERABILITYFamily: unix




xrdp 0.9.1 calls the PAM function auth_start_session in an incorrect location, leading to PAM session modules not being properly initialized, with a potential consequence of incorrect configurations or elevation of privileges, aka a pam_limits.so bypass.

Platform:
Ubuntu 16.04
Ubuntu 14.04
Product:
xrdp
Reference:
CVE-2017-6967
CVE    1
CVE-2017-6967
CPE    3
cpe:/o:ubuntu:ubuntu_linux:16.04
cpe:/o:ubuntu:ubuntu_linux:14.04
cpe:/a:sourceforge:xrdp

© SecPod Technologies