VYPR

SELinux Policy

by Selinux

CVEs (2)

  • CVE-2020-24612MedAug 24, 2020
    risk 0.44cvss 6.7epss 0.00

    An issue was discovered in the selinux-policy (aka Reference Policy) package 3.14 through 2020-08-24 because the .config/Yubico directory is mishandled. Consequently, when SELinux is in enforced mode, pam-u2f is not allowed to read the user's U2F configuration file. If…

  • CVE-2023-21377MedOct 30, 2023
    risk 0.36cvss 5.5epss 0.00

    In SELinux Policy, there is a possible restriction bypass due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.