ZeroHour

Vulnerabilities

1 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2023-4641
A flaw was found in shadow-utils.

A flaw was found in shadow-utils. When asking for a new password, shadow-utils asks the password twice. If the password fails on the second attempt, shadow-utils fails in cleaning the buffer used to store the first entry. This may allow an attacker with enough access to retrieve the password from the memory.

NVD description · AI analysis pending
5.5<1%
  • shadow-maint shadow-utils
  • shadow-maint codeready linux builder
  • shadow-maint codeready linux builder for arm64
  • +1 more