Lucene search

K
ubuntucveUbuntu.comUB:CVE-2007-4569
HistorySep 21, 2007 - 12:00 a.m.

CVE-2007-4569

2007-09-2100:00:00
ubuntu.com
ubuntu.com
14

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

EPSS

0.004

Percentile

74.3%

backend/session.c in KDM in KDE 3.3.0 through 3.5.7, when autologin is
configured and “shutdown with password” is enabled, allows remote attackers
to bypass the password requirement and login to arbitrary accounts via
unspecified vectors.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchkdebase< 4:3.5.2-0ubuntu27.2UNKNOWN
ubuntu6.10noarchkdebase< 4:3.5.5-0ubuntu3.6UNKNOWN
ubuntu7.04noarchkdebase< 4:3.5.6-0ubuntu20.4UNKNOWN

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

EPSS

0.004

Percentile

74.3%