In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "low", "binaries": [ { "binary_version": "1:4.1.5.1-1ubuntu9.5+esm1", "binary_name": "login" }, { "binary_version": "1:4.1.5.1-1ubuntu9.5+esm1", "binary_name": "login-dbgsym" }, { "binary_version": "1:4.1.5.1-1ubuntu9.5+esm1", "binary_name": "passwd" }, { "binary_version": "1:4.1.5.1-1ubuntu9.5+esm1", "binary_name": "passwd-dbgsym" }, { "binary_version": "1:4.1.5.1-1ubuntu9.5+esm1", "binary_name": "uidmap" }, { "binary_version": "1:4.1.5.1-1ubuntu9.5+esm1", "binary_name": "uidmap-dbgsym" } ] }
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "low", "binaries": [ { "binary_version": "1:4.2-3.1ubuntu5.5+esm1", "binary_name": "login" }, { "binary_version": "1:4.2-3.1ubuntu5.5+esm1", "binary_name": "login-dbgsym" }, { "binary_version": "1:4.2-3.1ubuntu5.5+esm1", "binary_name": "passwd" }, { "binary_version": "1:4.2-3.1ubuntu5.5+esm1", "binary_name": "passwd-dbgsym" }, { "binary_version": "1:4.2-3.1ubuntu5.5+esm1", "binary_name": "uidmap" }, { "binary_version": "1:4.2-3.1ubuntu5.5+esm1", "binary_name": "uidmap-dbgsym" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_version": "1:4.5-1ubuntu1", "binary_name": "login" }, { "binary_version": "1:4.5-1ubuntu1", "binary_name": "login-dbgsym" }, { "binary_version": "1:4.5-1ubuntu1", "binary_name": "passwd" }, { "binary_version": "1:4.5-1ubuntu1", "binary_name": "passwd-dbgsym" }, { "binary_version": "1:4.5-1ubuntu1", "binary_name": "uidmap" }, { "binary_version": "1:4.5-1ubuntu1", "binary_name": "uidmap-dbgsym" } ] }