Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
RHSA-2025:20145
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2025:20145
Import Source
https://security.access.redhat.com/data/osv/RHSA-2025:20145.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2025:20145
Upstream
CVE-2024-56433
Published
2025-11-12T10:27:40Z
Modified
2025-11-12T11:02:56.441186Z
Severity
3.6 (Low)
CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N
CVSS Calculator
Summary
Red Hat Security Advisory: shadow-utils security update
Details
References
https://access.redhat.com/errata/RHSA-2025:20145
https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/html/10.1_release_notes/index
https://access.redhat.com/security/updates/classification/#low
https://bugzilla.redhat.com/show_bug.cgi?id=2334165
https://issues.redhat.com/browse/RHEL-105943
https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_20145.json
https://access.redhat.com/security/cve/CVE-2024-56433
https://www.cve.org/CVERecord?id=CVE-2024-56433
https://nvd.nist.gov/vuln/detail/CVE-2024-56433
https://github.com/shadow-maint/shadow/blob/e2512d5741d4a44bdd81a8c2d0029b6222728cf0/etc/login.defs#L238-L241
https://github.com/shadow-maint/shadow/issues/1157
https://github.com/shadow-maint/shadow/releases/tag/4.4
Affected packages
Red Hat:enterprise_linux:10.1
shadow-utils
Package
Name
shadow-utils
Purl
pkg:rpm/redhat/shadow-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:4.15.0-8.el10
shadow-utils-debuginfo
Package
Name
shadow-utils-debuginfo
Purl
pkg:rpm/redhat/shadow-utils-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:4.15.0-8.el10
shadow-utils-debugsource
Package
Name
shadow-utils-debugsource
Purl
pkg:rpm/redhat/shadow-utils-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:4.15.0-8.el10
shadow-utils-subid
Package
Name
shadow-utils-subid
Purl
pkg:rpm/redhat/shadow-utils-subid
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:4.15.0-8.el10
shadow-utils-subid-debuginfo
Package
Name
shadow-utils-subid-debuginfo
Purl
pkg:rpm/redhat/shadow-utils-subid-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:4.15.0-8.el10
shadow-utils-subid-devel
Package
Name
shadow-utils-subid-devel
Purl
pkg:rpm/redhat/shadow-utils-subid-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:4.15.0-8.el10
RHSA-2025:20145 - OSV