CVE-2013-4169

GNOME Display Manager < 2.21.1 - Local Privilege Escalation via Symlink Attack on /tmp/.X11-unix/

Title source: llm
STIX 2.1

Description

GNOME Display Manager (gdm) before 2.21.1 allows local users to change permissions of arbitrary directories via a symlink attack on /tmp/.X11-unix/.

References (3)

Core 3
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/54661
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2013-1213.html

Scores

EPSS 0.0003
EPSS Percentile 7.9%

Details

CWE
CWE-59
Status published
Products (44)
gnome/gnome_display_manager 0.7
gnome/gnome_display_manager 1.0
gnome/gnome_display_manager 2.0
gnome/gnome_display_manager 2.2
gnome/gnome_display_manager 2.13
gnome/gnome_display_manager 2.14
gnome/gnome_display_manager 2.14.1
gnome/gnome_display_manager 2.14.2
gnome/gnome_display_manager 2.14.3
gnome/gnome_display_manager 2.14.4
... and 34 more
Published Sep 10, 2013
Tracked Since Feb 18, 2026