Security Advisory

CVE-2003-0388

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2003-06-18 04:00:00
Last updated 2024-08-08 01:50:47
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

pam_wheel in Linux-PAM 0.78, with the trust option enabled and the use_uid option disabled, allows local users to spoof log entries and gain privileges by causing getlogin() to return a spoofed user name.