Unauthorized User Privilege Escalation in authd for SSH Sessions
CVE-2025-5689

6.4MEDIUM

Key Information:

Vendor

Canonical

Status
Vendor
CVE Published:
16 June 2025

What is CVE-2025-5689?

A security flaw exists in the authenticating daemon (authd) related to the handling of temporary user records during pre-authentication in the Name Service Switch (NSS) framework. When a user logs in for the first time, this issue erroneously assigns them to the root group for the duration of their SSH session, potentially allowing unauthorized access and actions that should be restricted to privileged users. Addressing this vulnerability is crucial for maintaining system integrity and protecting against unauthorized actions.

Affected Version(s)

authd Linux 0.0.0 <= 0.5.4

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-5689 : Unauthorized User Privilege Escalation in authd for SSH Sessions