First published: Thu May 22 2014(Updated: )
debian/guest-account in Light Display Manager (lightdm) 1.0.x before 1.0.6 and 1.1.x before 1.1.7, as used in Ubuntu Linux 11.10, allows local users to delete arbitrary files via a space in the name of a file in /tmp. NOTE: this identifier was SPLIT per ADT1/ADT2 due to different codebases and affected versions. CVE-2012-6648 has been assigned for the gdm-guest-session issue.
Credit: security@ubuntu.com
Affected Software | Affected Version | How to fix |
---|---|---|
Robert Ancell Lightdm | =1.0.0 | |
Robert Ancell Lightdm | =1.0.1 | |
Robert Ancell Lightdm | =1.0.2 | |
Robert Ancell Lightdm | =1.0.3 | |
Robert Ancell Lightdm | =1.0.4 | |
Robert Ancell Lightdm | =1.0.5 | |
Robert Ancell Lightdm | =1.1.0 | |
Robert Ancell Lightdm | =1.1.1 | |
Robert Ancell Lightdm | =1.1.2 | |
Robert Ancell Lightdm | =1.1.3 | |
Robert Ancell Lightdm | =1.1.4 | |
Robert Ancell Lightdm | =1.1.5 | |
Robert Ancell Lightdm | =1.1.6 | |
Canonical Ubuntu Linux | =11.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.