2.1
CVSSv2

CVE-2013-4331

Published: 02/02/2014 Updated: 03/02/2014
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Light Display Manager (aka LightDM) 1.4.x prior to 1.4.3, 1.6.x prior to 1.6.2, and 1.7.x prior to 1.7.14 uses 0664 permissions for the temporary .Xauthority file, which allows local users to obtain sensitive information by reading the file.

Vulnerable Product Search on Vulmon Subscribe to Product

robert ancell lightdm 1.7.1

robert ancell lightdm 1.7.11

robert ancell lightdm 1.7.6

robert ancell lightdm 1.7.8

robert ancell lightdm 1.4.1

robert ancell lightdm 1.7.9

robert ancell lightdm 1.6.0

robert ancell lightdm 1.6.1

robert ancell lightdm 1.4.0

robert ancell lightdm 1.7.13

robert ancell lightdm 1.7.2

robert ancell lightdm 1.7.3

robert ancell lightdm 1.7.4

robert ancell lightdm 1.7.0

robert ancell lightdm 1.7.10

robert ancell lightdm 1.7.12

robert ancell lightdm 1.7.5

robert ancell lightdm 1.7.7

robert ancell lightdm 1.4.2

Vendor Advisories

Light Display Manager could be made to expose sensitive information ...