Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Debian DSA-5784-1: oath-toolkit local access escalation risk

debian
Calendar Grey October 4, 2024
Debian Logo
Enhance the oath-toolkit to mitigate local file manipulation threats that could result in unauthorized root privileges.
Fabian Vogt reported that the PAM module in oath-toolkit, a collection of components to build one-time password authentication systems, does not safely perform file operations in u...

Summary

For the stable distribution (bookworm), this problem has been fixed in
version 2.6.7-3.1+deb12u1.

We recommend that you upgrade your oath-toolkit packages.

For the detailed security status of oath-toolkit please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/source-package/oath-toolkit

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
important
Lowest
Low
Medium
High
Critical

Package: oath-toolkit
CVE ID: CVE-2024-47191

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here