CyberRota
Live Feed
Return to register
Case File

CVE-2011-3148

MEDIUM · CVSS 4.6 EPSS 0.70%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-07-22 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2011-3148
Severity
MEDIUM
CVSS
4.6
EPSS
0.70%
Linux

Original Filing — NVD Description

Stack-based buffer overflow in the _assemble_line function in modules/pam_env/pam_env.c in Linux-PAM (aka pam) before 1.1.5 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long string of white spaces at the beginning of the ~/.pam_environment file.