Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2011-1709
Disclosure Date: June 14, 2011 (last updated October 04, 2023)
GNOME Display Manager (gdm) before 2.32.2, when glib 2.28 is used, enables execution of a web browser with the uid of the gdm account, which allows local users to gain privileges via vectors involving the x-scheme-handler/http MIME type.
0
Attacker Value
Unknown
CVE-2011-0727
Disclosure Date: March 31, 2011 (last updated October 04, 2023)
GNOME Display Manager (gdm) 2.x before 2.32.1 allows local users to change the ownership of arbitrary files via a symlink attack on a (1) dmrc or (2) face icon file under /var/cache/gdm/.
0
Attacker Value
Unknown
CVE-2009-2697
Disclosure Date: September 04, 2009 (last updated October 04, 2023)
The Red Hat build script for the GNOME Display Manager (GDM) before 2.16.0-56 on Red Hat Enterprise Linux (RHEL) 5 omits TCP Wrapper support, which might allow remote attackers to bypass intended access restrictions via XDMCP connections, a different vulnerability than CVE-2007-5079.
0
Attacker Value
Unknown
CVE-2006-2452
Disclosure Date: June 09, 2006 (last updated October 04, 2023)
GNOME GDM 2.8, 2.12, 2.14, and 2.15, when the "face browser" feature is enabled, allows local users to access the "Configure Login Manager" functionality using their own password instead of the root password, which can be leveraged to gain additional privileges.
0