Red Hat Essential and Critical Security Patch Updates

Find the information you need for your favorite open source distribution .

RedHat: 'util-linux' vipw vulnerability

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

vipw, from the util-linux package in Red Hat Linux 7.1, included a new option that allowed editing of the /etc/shadow file as well as /etc/passwd. However, this option did not take measures to ensure that the file remained only readable by root.