Unauthorized User Privilege Escalation in authd for SSH Sessions
CVE-2025-5689
6.4MEDIUM
What is CVE-2025-5689?
A security flaw exists in the authenticating daemon (authd) related to the handling of temporary user records during pre-authentication in the Name Service Switch (NSS) framework. When a user logs in for the first time, this issue erroneously assigns them to the root group for the duration of their SSH session, potentially allowing unauthorized access and actions that should be restricted to privileged users. Addressing this vulnerability is crucial for maintaining system integrity and protecting against unauthorized actions.
Affected Version(s)
authd Linux 0.0.0 <= 0.5.4