CVE-2009-0887
published 2009-03-12CVE-2009-0887: Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Linux-PAM (aka pam) 1.0.3 and earlier, when a configuration file contains…
PriorityP419medium6.6CVSS 2.0
AVLACMAuSCCICAC
EPSS
1.93%
77.7th percentile
Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Linux-PAM (aka pam) 1.0.3 and earlier, when a configuration file contains non-ASCII usernames, might allow remote attackers to cause a denial of service, and might allow remote authenticated users to obtain login access with a different user's non-ASCII username, via a login attempt.
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pam | < pam 1.0.1-10 (bookworm) | pam 1.0.1-10 (bookworm) |
| linux-pam | linux-pam | <= 1.0.3 | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| linux-pam | linux-pam | — | — |
| pam | pam | >= 0 < 1.0.1-10 | 1.0.1-10 |
| pam | pam | >= 0 < 1.0.1-10 | 1.0.1-10 |
| pam | pam | >= 0 < 1.0.1-10 | 1.0.1-10 |
| pam | pam | >= 0 < 1.0.1-10 | 1.0.1-10 |
CVSS provenance
nvdv2.06.6MEDIUMAV:L/AC:M/Au:S/C:C/I:C/A:C
osv6.6MEDIUM
vendor_debian6.6LOW
vendor_redhat6.6MEDIUM
vendor_ubuntu6.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
PAM regression
vendor_ubuntu·2011-05-31·CVSS 6.6
[MEDIUM] PAM regression
Title: PAM regression
Summary: The USN-1140-1 PAM update caused cron to stop working.
USN-1140-1 fixed vulnerabilities in PAM. A regression was found that caused
cron to stop working with a "Module is unknown" error. As a result, systems
configured with automatic updates will not receive updates until cron is
restarted, these updates are installed or the system is rebooted. This
update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Marcus Granado discovered that PAM incorrectly handled configuration files
with non-ASCII usernames. A remote attacker could use this flaw to cause a
denial of service, or possibly obtain login access with a different users
username. This issue only affected Ubuntu 8.04 LTS. (CVE-2009-0887)
It was discovered that the PAM
Ubuntu
PAM vulnerabilities
vendor_ubuntu·2011-05-30·CVSS 6.6
CVE-2009-0887 [MEDIUM] PAM vulnerabilities
Title: PAM vulnerabilities
Summary: An attacker could cause PAM to read or delete arbitrary files or cause it
to crash.
Marcus Granado discovered that PAM incorrectly handled configuration files
with non-ASCII usernames. A remote attacker could use this flaw to cause a
denial of service, or possibly obtain login access with a different users
username. This issue only affected Ubuntu 8.04 LTS. (CVE-2009-0887)
It was discovered that the PAM pam_xauth, pam_env and pam_mail modules
incorrectly handled dropping privileges when performing operations. A local
attacker could use this flaw to read certain arbitrary files, and access
other sensitive information. (CVE-2010-3316, CVE-2010-3430, CVE-2010-3431,
CVE-2010-3435)
It was discovered that the PAM pam_namespace module incorrectly cleaned th
Red Hat
pam: integer signedness error in _pam_StrTok()
vendor_redhat·2009-02-25·CVSS 6.6
CVE-2009-0887 [MEDIUM] pam: integer signedness error in _pam_StrTok()
pam: integer signedness error in _pam_StrTok()
Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Linux-PAM (aka pam) 1.0.3 and earlier, when a configuration file contains non-ASCII usernames, might allow remote attackers to cause a denial of service, and might allow remote authenticated users to obtain login access with a different user's non-ASCII username, via a login attempt.
Statement: Red Hat does not consider this issue to be a security vulnerability. Affected function is only used to parse PAM configuration files and this bug can only be triggered by specific configuration created by the system administrator.
Debian
CVE-2009-0887: pam - Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Lin...
vendor_debian·2009·CVSS 6.6
CVE-2009-0887 [MEDIUM] CVE-2009-0887: pam - Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Lin...
Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Linux-PAM (aka pam) 1.0.3 and earlier, when a configuration file contains non-ASCII usernames, might allow remote attackers to cause a denial of service, and might allow remote authenticated users to obtain login access with a different user's non-ASCII username, via a login attempt.
Scope: local
bookworm: resolved (fixed in 1.0.1-10)
bullseye: resolved (fixed in 1.0.1-10)
forky: resolved (fixed in 1.0.1-10)
sid: resolved (fixed in 1.0.1-10)
trixie: resolved (fixed in 1.0.1-10)
GHSA
GHSA-p45g-44mp-mq74: Integer signedness error in the _pam_StrTok function in libpam/pam_misc
ghsa_unreviewed·2022-05-02
CVE-2009-0887 [MEDIUM] GHSA-p45g-44mp-mq74: Integer signedness error in the _pam_StrTok function in libpam/pam_misc
Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Linux-PAM (aka pam) 1.0.3 and earlier, when a configuration file contains non-ASCII usernames, might allow remote attackers to cause a denial of service, and might allow remote authenticated users to obtain login access with a different user's non-ASCII username, via a login attempt.
OSV
CVE-2009-0887: Integer signedness error in the _pam_StrTok function in libpam/pam_misc
osv·2009-03-12·CVSS 6.6
CVE-2009-0887 [MEDIUM] CVE-2009-0887: Integer signedness error in the _pam_StrTok function in libpam/pam_misc
Integer signedness error in the _pam_StrTok function in libpam/pam_misc.c in Linux-PAM (aka pam) 1.0.3 and earlier, when a configuration file contains non-ASCII usernames, might allow remote attackers to cause a denial of service, and might allow remote authenticated users to obtain login access with a different user's non-ASCII username, via a login attempt.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2009-1213 bugzilla: CSRF vulnerability in attachment editing
bugzilla·2009-04-06·CVSS 6.8
CVE-2009-1213 [MEDIUM] CVE-2009-1213 bugzilla: CSRF vulnerability in attachment editing
CVE-2009-1213 bugzilla: CSRF vulnerability in attachment editing
Common Vulnerabilities and Exposures assigned an identifier CVE-2009-1213 to
the following vulnerability:
Name: CVE-2009-1213
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1213
Assigned: 20090331
Reference: CONFIRM: http://www.bugzilla.org/security/3.2.2/
Reference: CONFIRM: https://bugzilla.mozilla.org/show_bug.cgi?id=476603
Reference: BID:34308
Reference: URL: http://www.securityfocus.com/bid/34308
Reference: SECUNIA:34545
Reference: URL: http://secunia.com/advisories/34545
Reference: SECUNIA:34547
Reference: URL: http://secunia.com/advisories/34547
Reference: VUPEN:ADV-2009-0887
Reference: URL: http://www.vupen.com/english/advisories/2009/0887
Reference: XF:bugzilla-attachment-csrf(49524)
Reference: URL: ht
Bugzilla
CVE-2009-0887 pam: integer signedness error in _pam_StrTok()
bugzilla·2009-03-12·CVSS 6.6
CVE-2009-0887 [MEDIUM] CVE-2009-0887 pam: integer signedness error in _pam_StrTok()
CVE-2009-0887 pam: integer signedness error in _pam_StrTok()
Common Vulnerabilities and Exposures assigned an identifier CVE-2009-0887 to
the following vulnerability:
Name: CVE-2009-0887
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0887
Assigned: 20090312
Reference: MLIST:[oss-security] 20090305 CVE Request -- pam
Reference: URL: http://openwall.com/lists/oss-security/2009/03/05/1
Reference: CONFIRM: http://pam.cvs.sourceforge.net/viewvc/pam/Linux-PAM/libpam/pam_misc.c?r1=1.9&r2=1.10&view=patch
Reference: CONFIRM: http://pam.cvs.sourceforge.net/viewvc/pam/Linux-PAM/libpam/pam_misc.c?view=log
Reference: BID:34010
Reference: URL: http://www.securityfocus.com/bid/34010
Reference: XF:linuxpam-pamstrtok-priv-escalation(49110)
Reference: URL: http://xforce.iss.net/xforce/xfdb/49
http://openwall.com/lists/oss-security/2009/03/05/1http://pam.cvs.sourceforge.net/viewvc/pam/Linux-PAM/libpam/pam_misc.c?r1=1.9&%3Br2=1.10&%3Bview=patchhttp://pam.cvs.sourceforge.net/viewvc/pam/Linux-PAM/libpam/pam_misc.c?view=loghttp://secunia.com/advisories/34733http://www.mandriva.com/security/advisories?name=MDVSA-2009:077http://www.securityfocus.com/bid/34010https://exchange.xforce.ibmcloud.com/vulnerabilities/49110https://www.redhat.com/archives/fedora-package-announce/2009-April/msg00398.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-April/msg00420.htmlhttp://openwall.com/lists/oss-security/2009/03/05/1http://pam.cvs.sourceforge.net/viewvc/pam/Linux-PAM/libpam/pam_misc.c?r1=1.9&%3Br2=1.10&%3Bview=patchhttp://pam.cvs.sourceforge.net/viewvc/pam/Linux-PAM/libpam/pam_misc.c?view=loghttp://secunia.com/advisories/34733http://www.mandriva.com/security/advisories?name=MDVSA-2009:077http://www.securityfocus.com/bid/34010https://exchange.xforce.ibmcloud.com/vulnerabilities/49110https://www.redhat.com/archives/fedora-package-announce/2009-April/msg00398.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-April/msg00420.html
2009-03-12
Published