When cache is enabled, some passdb/userdb drivers incorrectly cache all users with same cache key, causing wrong cached information to be used for these users. After cached login, all subsequent logins are for same user. Install fixed version or disable caching either globally or for the impacted passdb/userdb drivers. No publicly available exploits are known.
References
Configurations
No configuration.
History
31 Oct 2025, 09:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-31 09:15
Updated : 2025-10-31 09:15
NVD link : CVE-2025-30189
Mitre link : CVE-2025-30189
CVE.ORG link : CVE-2025-30189
JSON object : View
Products Affected
No product.
CWE
CWE-1250
Improper Preservation of Consistency Between Independent Representations of Shared State
