HomeDefectsLIN1025-3212
Acknowledged

LIN1025-3212 : Security Advisory - libpam - CVE-2025-8941

Created: Aug 13, 2025    Updated: Oct 1, 2025
Found In Version: 10.25.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Userspace

Description

A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

CREATE(Triage):(User=lchen-cn) CVE-2025-8941 (https://nvd.nist.gov/vuln/detail/CVE-2025-8941)