Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-4459
HistoryOct 25, 2013 - 12:00 a.m.

CVE-2013-4459

2013-10-2500:00:00
ubuntu.com
ubuntu.com
8

CVSS2

3.3

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:M/Au:N/C:P/I:P/A:N

EPSS

0

Percentile

5.1%

LightDM 1.7.5 through 1.8.3 and 1.9.x before 1.9.2 does not apply the
AppArmor profile to the Guest account, which allows local users to bypass
intended restrictions by leveraging the Guest account.

Bugs

Notes

Author Note
mdeslaur only 1.8+
OSVersionArchitecturePackageVersionFilename
ubuntu13.10noarchlightdm< 1.8.4-0ubuntu1UNKNOWN

CVSS2

3.3

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:M/Au:N/C:P/I:P/A:N

EPSS

0

Percentile

5.1%