Vulnerability Details CVE-2020-27678
An issue was discovered in illumos before 2020-10-22, as used in OmniOS before r151030by, r151032ay, and r151034y and SmartOS before 20201022. There is a buffer overflow in parse_user_name in lib/libpam/pam_framework.c.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 62.9%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-27678
-
cpe:2.3:o:illumos:illumos:-
-
cpe:2.3:o:joyent:smartos:20120614
-
cpe:2.3:o:joyent:smartos:20161110t013148z
-
cpe:2.3:o:joyent:smartos:20170803
-
cpe:2.3:o:joyent:smartos:20170803-20170803t064301z
-
cpe:2.3:o:omniosce:omnios:-
-
cpe:2.3:o:omniosce:omnios:r151022
-
cpe:2.3:o:omniosce:omnios:r151024
-
cpe:2.3:o:omniosce:omnios:r151026
-
cpe:2.3:o:omniosce:omnios:r151028
-
cpe:2.3:o:omniosce:omnios:r151030
-
cpe:2.3:o:omniosce:omnios:r151032
-
cpe:2.3:o:omniosce:omnios:r151032ay
-
cpe:2.3:o:omniosce:omnios:r151034