CVE-2012-6111: Input Validation
Published Dec 20, 2019
·Updated
gnome-keyring does not discard stored secrets when using gnomekeyringlockallsync function
Affected Software
5 affected componentsFixes available
Gnome GNOME Keyring=3.2
Gnome GNOME Keyring=3.4
Debian Debian Linux=8.0
Debian Debian Linux=9.0
debian/gnome-keyring
3.36.0-142.1-148.0-148.0-5
Event History
Dec 20, 2019
CVE Published
via MITRE·02:25 PM
Data Sourced
via MITRE·02:25 PM
DescriptionWeakness
Feb 18, 2026
Data Sourced
via Debian·02:37 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2012-6111?
CVE-2012-6111 is classified as a medium severity vulnerability.
2
How do I fix CVE-2012-6111?
To fix CVE-2012-6111, update gnome-keyring to the latest version recommended for your operating system.
3
Which versions of gnome-keyring are affected by CVE-2012-6111?
CVE-2012-6111 affects gnome-keyring versions 3.2, 3.4, and certain older versions.
4
Is gnome-keyring the only software vulnerable to CVE-2012-6111?
No, other software using gnome-keyring functionalities may also be affected by CVE-2012-6111.
5
What does CVE-2012-6111 allow an attacker to do?
CVE-2012-6111 may allow unauthorized access to stored secrets if gnome_keyring_lock_all_sync is misused.