CVE-2025-6020: exploitation status and patch state
CVE-2025-6020 · CVSS 7.8 HIGH · EPSS <1%
A flaw was found in linux-pam. The module pam_namespace may use access user-controlled paths without proper protection, allowing local users to elevate their privileges to root via multiple symlink attacks and race conditions.
Is CVE-2025-6020 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at <1%.
Public exploit code: none found in monitored sources.