HIGH7.5Go
GHSA-4gfw-wf7c-w6g2· CVE-2024-9312, GO-2024-3188Authd allows attacker-controlled usernames to yield controllable UIDs
Modified: 10/11/2024
package
pkg:go/github.com/ubuntu/authd
Authd allows attacker-controlled usernames to yield controllable UIDs
Modified: 10/11/2024
New authd users logging in via SSH are members of the root group
Modified: 7/28/2025
PAM module may allow accessing with the credentials of another user
Modified: 1/21/2025
PAM module may allow accessing with the credentials of another user in github.com/ubuntu/authd
Modified: 3/3/2026
Authd allows attacker-controlled usernames to yield controllable UIDs in github.com/ubuntu/authd
Modified: 3/3/2026
New authd users logging in via SSH are members of the root group in github.com/ubuntu/authd
Modified: 3/3/2026