[CLSA-2025:1749571114] pam: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2025-06-10 15:58:38 UTC
Description:
- CVE-2024-10041: fix possibility of leakage of secret information stored in memory - CVE-2024-22365: fix potential DoS via mkfifo because the openat call lacks O_DIRECTORY
Updated packages:
  • pam-1.1.8-23.0.1.el7.tuxcare.els1.i686.rpm
    sha:0f212771f094221a5180cde8b94f70b00657661ebfa80ab7cc6c8061b85559b3
  • pam-1.1.8-23.0.1.el7.tuxcare.els1.x86_64.rpm
    sha:7899a6a50e1eb3398f508e399c8ad56ce9d735e5c608f3b0ff91b2f8298a8d2b
  • pam-devel-1.1.8-23.0.1.el7.tuxcare.els1.i686.rpm
    sha:42c92240020cd99bea0e26082612742335885202e4d3f11734da63561728618c
  • pam-devel-1.1.8-23.0.1.el7.tuxcare.els1.x86_64.rpm
    sha:bf5ba3a7ca19b54b0f1a54b3e9ad176791ca926dabeb6831c343c8be781af7d9
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.