CVE-2025-6018
A Local Privilege Escalation (LPE) vulnerability has been discovered in pam-config within Linux Pluggable Authentication Modules (PAM). This flaw allows an unprivileged local attacker (for example, a user logged in via SSH) to obtain the elevated privileges normally reserved for a physically present, "allow_active" user. The highest risk is that the attacker can then perform all allow_active yes Polkit actions, which are typically restricted to console users, potentially gaining unauthorized control over system configurations, services, or other sensitive operations.
- Suse Pam-config
- = 1.1.8-24.71.1
- Fix
- Available
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 1.0% (61th percentile)
- Weakness
- CWE-863
- NVD status
- Modified
- Published
- 2025-07-23
Workaround
Currently, there is no mitigation available for this vulnerability.
CVE-2025-6018 at NVD
30 known exploits for CVE-2025-6018
Proof-of-concept code and exploit modules indexed by Sploitus
CVE-2026-6018-9-Local-Privilege-Escalation-Chain
CVE-2025-6018_Poc
CVE-2025-6018-CVE-2025-6019-Privilege-Escalation-Exploit
CVE-2025-6018-and-CVE-2025-6019
CVE-2025-6018_CVE-2025-6019_autopwn
CVE-2025-6019
CVE-2025-6019
Exploit-Chain-CVE-2025-6018-6019
opensuse-leap-privesc-exploit
CVE-2025-6018-CVE-2025-6019-Privilege-Escalation-Exploit
Analyse-faille-de-s-curit-CVE-2025-6018-CVE-2025-6019
CVE-2025-6018
CVE-2025-6018-and-CVE-2025-6019-Privilege-Escalation
CVE-2025-6018-19
CVE-2025-6018-19-exploit
CVE-2025-6018-6019-PoC
CVE-2025-6018-6019
CVE-2025-6019-udisks-lpe-no-image
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for CVE-2025-6019
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for Incorrect Authorization in Suse Pam-Config
Exploit for CVE-2025-6018
Linux PAM Environment - Variable Injection Local Privilege Escalation