CVE-2012-2350
published 2019-11-21CVE-2012-2350: pam_shield before 0.9.4: Default configuration does not perform protective action
PriorityP335high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
1.29%
67.3th percentile
pam_shield before 0.9.4: Default configuration does not perform protective action
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | pam-shield | < pam-shield 0.9.2-3.3 (bookworm) | pam-shield 0.9.2-3.3 (bookworm) |
| pam-shield | pam-shield | < 0.9.4 | 0.9.4 |
| pam-shield | pam-shield | >= 0 < 0.9.2-3.3 | 0.9.2-3.3 |
| pam-shield | pam-shield | >= 0 < 0.9.2-3.3 | 0.9.2-3.3 |
| pam_shield_project | pam_shield | < 0.9.4 | 0.9.4 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv7.5HIGH
vendor_debian7.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qcj3-68jf-39mr: pam_shield before 0
ghsa_unreviewed·2022-04-23
CVE-2012-2350 [HIGH] CWE-20 GHSA-qcj3-68jf-39mr: pam_shield before 0
pam_shield before 0.9.4: Default configuration does not perform protective action
OSV
CVE-2012-2350: pam_shield before 0
osv·2019-11-21·CVSS 7.5
CVE-2012-2350 [HIGH] CVE-2012-2350: pam_shield before 0
pam_shield before 0.9.4: Default configuration does not perform protective action
Debian
CVE-2012-2350: pam-shield - pam_shield before 0.9.4: Default configuration does not perform protective actio...
vendor_debian·2012·CVSS 7.5
CVE-2012-2350 [HIGH] CVE-2012-2350: pam-shield - pam_shield before 0.9.4: Default configuration does not perform protective actio...
pam_shield before 0.9.4: Default configuration does not perform protective action
Scope: local
bookworm: resolved (fixed in 0.9.2-3.3)
bullseye: resolved (fixed in 0.9.2-3.3)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2012/05/12/3https://access.redhat.com/security/cve/cve-2012-2350https://security-tracker.debian.org/tracker/CVE-2012-2350http://www.openwall.com/lists/oss-security/2012/05/12/3https://access.redhat.com/security/cve/cve-2012-2350https://security-tracker.debian.org/tracker/CVE-2012-2350
2019-11-21
Published