High severity7.0NVD Advisory· Published Jun 22, 2021· Updated Jun 17, 2026
CVE-2020-36394
CVE-2020-36394
Description
pam_setquota.c in the pam_setquota module before 2020-05-29 for Linux-PAM allows local attackers to set their quota on an arbitrary filesystem, in certain situations where the attacker's home directory is a FUSE filesystem mounted under /home.
Affected products
4- cpe:2.3:a:pam_setquota_project:pam_setquota:*:*:*:*:*:*:*:*Range: <2020-05-29
- Linux-PAM/pam_setquota moduledescription
- Range: <2020-05-29
Patches
Vulnerability mechanics
References
1- seclists.org/oss-sec/2020/q2/169nvdExploitMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.