Security Advisory

CVE-2024-22365

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-06 00:00:00
Last updated 2026-05-12 11:49:09
Assigner mitre
State PUBLISHED

Description

linux-pam (aka Linux PAM) before 1.6.0 allows attackers to cause a denial of service (blocked login process) via mkfifo because the openat call (for protect_dir) lacks O_DIRECTORY.