2025-09-29 16:08:36 +00:00
### [CVE-2024-10963](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-10963)
2025-09-29 21:09:30 +02:00

2025-09-29 16:08:36 +00:00





2025-09-29 21:09:30 +02:00

2025-09-29 16:08:36 +00:00


2025-09-29 21:09:30 +02:00






2025-09-29 16:08:36 +00:00
### Description
A flaw was found in pam_access, where certain rules in its configuration file are mistakenly treated as hostnames. This vulnerability allows attackers to trick the system by pretending to be a trusted hostname, gaining unauthorized access. This issue poses a risk for systems that rely on this feature to control who can access certain services or terminals.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/EGI-Federation/SVG-advisories
- https://github.com/adegoodyer/kubernetes-admin-toolkit
2025-09-29 21:09:30 +02:00
- https://github.com/runwhen-contrib/helm-charts
2025-09-29 16:08:36 +00:00