1.5
CVSSv2

CVE-2007-3381

Published: 07/08/2007 Updated: 16/10/2018
CVSS v2 Base Score: 1.5 | Impact Score: 2.9 | Exploitability Score: 2.7
VMScore: 134
Vector: AV:L/AC:M/Au:S/C:N/I:N/A:P

Vulnerability Summary

The GDM daemon in GNOME Display Manager (GDM) prior to 2.14.13, 2.16.x prior to 2.16.7, 2.18.x prior to 2.18.4, and 2.19.x prior to 2.19.5 does not properly handle NULL return values from the g_strsplit function, which allows local users to cause a denial of service (persistent daemon crash) via a crafted command to the daemon's socket, related to (1) gdm.c and (2) gdmconfig.c in daemon/, and (3) gdmconfig.c and (4) gdmflexiserver.c in gui/.

Vulnerable Product Search on Vulmon Subscribe to Product

gnome gdm 2.6

gnome gdm 2.5

gnome gdm 2.4

gnome gdm 2.14.5

gnome gdm 2.14.6

gnome gdm 2.14.1

gnome gdm 2.0

gnome gdm 0.7

gnome gdm 2.14.2

gnome gdm 2.14.9

gnome gdm 2.14.10

gnome gdm 1.0

gnome gdm 2.8

gnome gdm 2.14.3

gnome gdm 2.14.4

gnome gdm 2.14.11

gnome gdm

gnome gdm 2.13

gnome gdm 2.14

gnome gdm 2.3

gnome gdm 2.2

gnome gdm 2.14.7

gnome gdm 2.14.8

gnome gdm 2.16

gnome gdm 2.16.1

gnome gdm 2.16.2

gnome gdm 2.18

gnome gdm 2.18.1

gnome gdm 2.18.2

gnome gdm 2.18.3

gnome gdm 2.19.3

gnome gdm 2.19.4

gnome gdm 2.19

gnome gdm 2.19.1

gnome gdm 2.19.2