CVE-2008-2516

Libpam-pgsql - Authentication Bypass

Title source: rule

Description

pam_sm_authenticate in pam_pgsql.c in libpam-pgsql 0.6.3 does not properly consider operator precedence when evaluating the success of a pam_get_pass function call, which allows local users to gain privileges via a SIGINT signal when this function is executing, as demonstrated by a CTRL-C sequence at a sudo password prompt in an "auth sufficient pam_pgsql.so" configuration.

Scores

EPSS 0.0006
EPSS Percentile 18.1%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

libpam-pgsql/libpam-pgsql

Timeline

Published Jun 03, 2008
Tracked Since Feb 18, 2026