Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-7496

Опубликовано: 12 нояб. 2015
Источник: redhat
CVSS3: 4.3
CVSS2: 4.6
EPSS Низкий

Описание

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.

It was found that gdm could crash due to a signal handler dispatched to an invalid conversation. An attacker could crash gdm by holding the escape key when the screen is locked, possibly bypassing the locked screen.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5gdmNot affected
Red Hat Enterprise Linux 6gdmNot affected
Red Hat Enterprise Linux 7gdmFixedRHSA-2017:212801.08.2017
Red Hat Enterprise Linux 7gnome-sessionFixedRHSA-2017:212801.08.2017

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-364
https://bugzilla.redhat.com/show_bug.cgi?id=1283279gdm: Crash when holding Escape in log screen

EPSS

Процентиль: 33%
0.00406
Низкий

4.3 Medium

CVSS3

4.6 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 10 лет назад

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.

nvd
больше 10 лет назад

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.

debian
больше 10 лет назад

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate ...

github
около 4 лет назад

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.

oracle-oval
почти 9 лет назад

ELSA-2017-2128: gdm and gnome-session security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 33%
0.00406
Низкий

4.3 Medium

CVSS3

4.6 Medium

CVSS2