[CLSA-2025:1749825017] pam: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2025-06-28 19:12:03 UTC
Description:
- CVE-2024-10041: fix possibility of leakage of secret information stored in memory - CVE-2024-22365: fix potential DoS via mkfifo because the openat call lacks O_DIRECTORY
Updated packages:
  • pam-1.1.8-23.0.1.el7.tuxcare.els1.i686.rpm
    sha:95eee90075c2f14262aa77eca920f8db3d9fa496fb476f82a9cb95fce6f7525f
  • pam-1.1.8-23.0.1.el7.tuxcare.els1.x86_64.rpm
    sha:0c7e9b5c435751cfeb29c6c28521fb152b9ca86178e55915b993460293cc0d9a
  • pam-devel-1.1.8-23.0.1.el7.tuxcare.els1.i686.rpm
    sha:db7dcdc7c2aaae6793940f2e99befea1cb0ab390bf426630f21fc4d643de7d74
  • pam-devel-1.1.8-23.0.1.el7.tuxcare.els1.x86_64.rpm
    sha:643350992b3cc5475a236989adae076700ab5e670b4b601f3cabe30a2010daaa
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.