backend/session.c in KDM in KDE 3.3.0 up to and including 3.5.7, when autologin is configured and "shutdown with password" is enabled, allows remote malicious users to bypass the password requirement and login to arbitrary accounts via unspecified vectors.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kde kde 3.4.0 |
||
kde kde 3.4.1 |
||
kde kde 3.5.3 |
||
kde kde 3.5.4 |
||
kde kde 3.3.1 |
||
kde kde 3.3.2 |
||
kde kde 3.4 |
||
kde kde 3.5.1 |
||
kde kde 3.5.2 |
||
kde kde 3.4.2 |
||
kde kde 3.4.3 |
||
kde kde 3.5.5 |
||
kde kde 3.5.6 |
||
kde kde 3.3 |
||
kde kde 3.3.0 |
||
kde kde 3.5 |
||
kde kde 3.5.0 |
||
kde kde 3.5.7 |