PT-2025-5896 · Unknown+4 · Pam Pkcs11+4

Published

2024-11-06

·

Updated

2026-01-16

·

CVE-2025-24531

CVSS v2.0

9.7

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:P
Name of the Vulnerable Software and Affected Versions pam pkcs11 (affected versions not specified)
Description The issue is related to errors in the authentication process of the PAM-PKCS#11 module in Linux operating systems, specifically concerning the pam sm authenticate() function. This could potentially allow a remote attacker to bypass authentication procedures and gain unauthorized access to protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2025-01619
CVE-2025-24531
DSA-5864-1
GHSA-7MF6-RG36-QGCH
OPENSUSE-SU-2025:14738-1
SUSE-SU-2025:20130-1
SUSE-SU-2025:20225-1
USN-7363-1

Affected Products

Astra Linux
Linuxmint
Red Os
Ubuntu
Pam Pkcs11