Acknowledged
Created: Aug 13, 2025
Updated: Oct 1, 2025
Found In Version: 10.25.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Userspace
A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.
CREATE(Triage):(User=lchen-cn) CVE-2025-8941 (https://nvd.nist.gov/vuln/detail/CVE-2025-8941)