CVE-2015-3245 is an incomplete blacklist vulnerability in the libuser library, specifically affecting the chfn function in versions before 0.56.13-8 and 0.60-7, as used in Red Hat's userhelper program. This local vulnerability allows an unauthenticated attacker to cause a denial of service by corrupting the /etc/passwd file through a newline character in the GECOS field. While the CVSS score is low (2.1), its FAUCET Risk Score is high (95/100) and it has a higher EPSS score than 93% of all CVEs, indicating a greater likelihood of exploitation. Exploit intelligence shows available Metasploit modules and ExploitDB entries, with community discussion and media coverage indicating significant attention to this issue.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.56.13-5CPE matchmatch criteria | cpe:2.3:a:redhat:libuser:*:*:*:*:*:*:*:* | ||
0.60-1CPE matchmatch criteria | cpe:2.3:a:redhat:libuser:0.60-1:*:*:*:*:*:*:* | ||
0.60-2CPE matchmatch criteria | cpe:2.3:a:redhat:libuser:0.60-2:*:*:*:*:*:*:* | ||
0.60-3CPE matchmatch criteria | cpe:2.3:a:redhat:libuser:0.60-3:*:*:*:*:*:*:* | ||
0.60-4CPE matchmatch criteria | cpe:2.3:a:redhat:libuser:0.60-4:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.