In the provided project PAM module that allows connecting authentication modules in Python, (), which enables privilege escalation in the system. When using the vulnerable version of pam-python (which is not installed by default), a local user can gain access with root privileges through with the default environment variables processed in Python (for example, it is possible to initiate the saving of a file with bytecode to overwrite system files).
The vulnerability exists in the latest stable release 1.0.6, which has been available since August 2016. The issue was identified during an audit of the pam-python PAM module conducted by the team , and has already been fixed in the update . The status of updates for the pam-python package can be tracked on the following pages: , , . In Fedora and RHEL, the module .
Source: opennet.ru
