CVE Database
/

CVE-2015-3245

Back to search

CVE-2015-3245

Published: Aug 11, 2015

Modified: Aug 6, 2024

PUBLISHED

Description

Incomplete blacklist vulnerability in the chfn function in libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, allows local users to cause a denial of service (/etc/passwd corruption) via a newline character in the GECOS field.

VendorProductVersions

n/a

n/a

affected
n/a

References

FEDORA-2015-12301
vendor-advisory
x_refsource_FEDORA
44633
exploit
x_refsource_EXPLOIT-DB
RHSA-2015:1482
vendor-advisory
x_refsource_REDHAT
FEDORA-2015-12064
vendor-advisory
x_refsource_FEDORA
1033040
vdb-entry
x_refsource_SECTRACK
76021
vdb-entry
x_refsource_BID
RHSA-2015:1483
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now