CVE-2025-5689 describes a critical flaw in canonical authd where a newly logging-in user is temporarily assigned to the root group within their SSH session. This vulnerability, rated 8.5 HIGH (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N), allows an authenticated attacker to gain elevated privileges, potentially leading to high confidentiality impact and low integrity impact. While not currently listed in CISA's KEV catalog, its high FAUCET Risk Score of 81/100 and mention in community discussions and media coverage indicate significant concern, despite no public exploit code being available.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.5.4CPE matchmatch criteria | cpe:2.3:a:canonical:authd:*:*:*:*:*:*:*:* | ||
>= 0.0.0, <= 0.5.4CPE match | cpe:2.3:a:canonical:authd:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.