Security Advisory

CVE-2019-7639

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-02-08 11:00:00
Last updated 2024-09-17 00:51:16
Assigner mitre
State PUBLISHED

Description

An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect password, even though a failure entry is recorded in the /var/log/messages file.