Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-7496

Опубликовано: 12 нояб. 2015
Источник: redhat
CVSS3: 4.3
CVSS2: 4.6

Описание

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.

It was found that gdm could crash due to a signal handler dispatched to an invalid conversation. An attacker could crash gdm by holding the escape key when the screen is locked, possibly bypassing the locked screen.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5gdmNot affected
Red Hat Enterprise Linux 6gdmNot affected
Red Hat Enterprise Linux 7gdmFixedRHSA-2017:212801.08.2017
Red Hat Enterprise Linux 7gnome-sessionFixedRHSA-2017:212801.08.2017

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-364
https://bugzilla.redhat.com/show_bug.cgi?id=1283279gdm: Crash when holding Escape in log screen

4.3 Medium

CVSS3

4.6 Medium

CVSS2

Связанные уязвимости

ubuntu
около 10 лет назад

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.

nvd
около 10 лет назад

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.

debian
около 10 лет назад

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate ...

github
больше 3 лет назад

GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.

oracle-oval
больше 8 лет назад

ELSA-2017-2128: gdm and gnome-session security, bug fix, and enhancement update (MODERATE)

4.3 Medium

CVSS3

4.6 Medium

CVSS2