| id: GO-2024-3188 | |
| modules: | |
| - module: github.com/ubuntu/authd | |
| versions: | |
| - fixed: 0.3.6 | |
| vulnerable_at: 0.3.5 | |
| summary: Authd allows attacker-controlled usernames to yield controllable UIDs in github.com/ubuntu/authd | |
| cves: | |
| - CVE-2024-9312 | |
| ghsas: | |
| - GHSA-4gfw-wf7c-w6g2 | |
| references: | |
| - advisory: https://github.com/ubuntu/authd/security/advisories/GHSA-4gfw-wf7c-w6g2 | |
| source: | |
| id: GHSA-4gfw-wf7c-w6g2 | |
| created: 2025-01-29T09:47:20.814811-05:00 | |
| review_status: REVIEWED |