ZeroHour

CVE-2020-27678

CVSS 3.1
9.8 critical
EPSS
1%p72
Published
()
Modified
Description

An issue was discovered in illumos before 2020-10-22, as used in OmniOS before r151030by, r151032ay, and r151034y and SmartOS before 20201022. There is a buffer overflow in parse_user_name in lib/libpam/pam_framework.c.

Vendors
illumosjoyentomniosce
Products
illumos, smartos, omnios
Weakness
CWE-120
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.