When using CA Privileged Access Manager (PAM) 14.1 on Red Hat Enterprise Linux (RHEL) 9.8, users are unable to change passwords using /usr/bin/passwd or escalate privileges using /bin/su. This occurs even if the bypass parameters are correctly configured.
Product: CA Privileged Access Manager Server Control (PAMSC)
Version: 14.1
OS: Red Hat Enterprise Linux (RHEL) 9.8
Problem executing multiple suid programs
The solution allows that we can specify multiple program in bypass_suid_program.
Fixed in the last certification package for PAMSC and Red Hat 10.2 and higher on PAMSC page
Download the certification package pamsc-14.10.80.59-\_LINUX\_X64.zip.Install the package following the standard installation procedure for native or legacy modes.
Verify that /usr/bin/passwd and /bin/su function correctly.