CVE-2009-2697

Red Hat GDM <2.16.0-56 - Auth Bypass

Title source: llm

Description

The Red Hat build script for the GNOME Display Manager (GDM) before 2.16.0-56 on Red Hat Enterprise Linux (RHEL) 5 omits TCP Wrapper support, which might allow remote attackers to bypass intended access restrictions via XDMCP connections, a different vulnerability than CVE-2007-5079.

Scores

EPSS 0.0020
EPSS Percentile 42.2%

Classification

CWE
CWE-287
Status draft

Affected Products (13)

gnome/gdm < 2.16
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm
gnome/gdm

Timeline

Published Sep 04, 2009
Tracked Since Feb 18, 2026