Loading HuntDB...

GHSA-8fqg-fw5h-m988

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect password, even though a failure entry is recorded in the /var/log/messages file.

Related CVEs

Key Information

GHSA ID
GHSA-8fqg-fw5h-m988
Published
May 13, 2022 1:22 AM
Last Modified
May 13, 2022 1:22 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 29, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.