A flaw was found in util-linux. This vulnerability allows...
Moderate severity
Unreviewed
Published
Dec 5, 2025
to the GitHub Advisory Database
•
Updated Dec 5, 2025
Description
Published by the National Vulnerability Database
Dec 5, 2025
Published to the GitHub Advisory Database
Dec 5, 2025
Last updated
Dec 5, 2025
A flaw was found in util-linux. This vulnerability allows a heap buffer overread when processing 256-byte usernames, specifically within the
setpwnam()function, affecting SUID (Set User ID) login-utils utilities writing to the password database.References