Vulnerabilities (CVE)

Filtered by vendor Google Subscribe
Filtered by product Fscrypt
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-6558 1 Google 1 Fscrypt 2019-10-03 4.9 MEDIUM 6.5 MEDIUM
The pam_fscrypt module in fscrypt before 0.2.4 may incorrectly restore primary and supplementary group IDs to the values associated with the root user, which allows attackers to gain privileges via a successful login through certain applications that use Linux-PAM (aka pam).