Lucene search

K
ubuntucveUbuntu.comUB:CVE-2014-0979
HistoryJan 23, 2014 - 12:00 a.m.

CVE-2014-0979

2014-01-2300:00:00
ubuntu.com
ubuntu.com
13

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

EPSS

0

Percentile

5.1%

The start_authentication function in lightdm-gtk-greeter.c in LightDM GTK+
Greeter before 1.7.1 does not properly handle the return value from the
lightdm_greeter_get_authentication_user function, which allows local users
to cause a denial of service (NULL pointer dereference) via an empty
username.

Bugs

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

EPSS

0

Percentile

5.1%