util-linux-ng

Page content
  • Vulnerable: 2.13.1-1
  • Unaffected: 2.13.1-2kalgan1

A weakness has been reported in util-linux-ng, which can be exploited by malicious people to manipulate certain data. The security issue is caused due to an error in login.c while logging login attempts. This can be exploited to inject e.g. an arbitrary address in the audit logs via a specially crafted username.

CVEs: