3.3
CVSSv2

CVE-2013-4459

Published: 23/11/2013 Updated: 25/11/2013
CVSS v2 Base Score: 3.3 | Impact Score: 4.9 | Exploitability Score: 3.4
VMScore: 294
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

LightDM 1.7.5 up to and including 1.8.3 and 1.9.x prior to 1.9.2 does not apply the AppArmor profile to the Guest account, which allows local users to bypass intended restrictions by leveraging the Guest account.

Vulnerable Product Search on Vulmon Subscribe to Product

robert ancell lightdm 1.7.12

robert ancell lightdm 1.7.11

robert ancell lightdm 1.7.10

robert ancell lightdm 1.7.9

robert ancell lightdm 1.9.0

robert ancell lightdm 1.8.3

robert ancell lightdm 1.7.15

robert ancell lightdm 1.7.13

robert ancell lightdm 1.7.8

robert ancell lightdm 1.7.6

robert ancell lightdm 1.8.2

robert ancell lightdm 1.8.1

robert ancell lightdm 1.8.0

robert ancell lightdm 1.7.18

robert ancell lightdm 1.7.17

robert ancell lightdm 1.9.1

robert ancell lightdm 1.7.16

robert ancell lightdm 1.7.14

robert ancell lightdm 1.7.7

robert ancell lightdm 1.7.5

canonical ubuntu linux 13.10

Vendor Advisories

Light Display Manager could be made to expose sensitive information locally ...