Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:14571
HistoryMay 02, 2019 - 4:53 a.m.

Denial Of Service (DoS)

2019-05-0204:53:01
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0

Percentile

5.1%

pam is vulnerable to denial of service. A denial of service flaw was found in the way the pam_env module expanded certain environment variables. If an application’s PAM configuration contained user_readenv=1 (not default), a local attacker could use this flaw to cause the application to enter an infinite loop.