CVE-2013-4331: Low severity lightdm vulnerability
Light Display Manager (aka LightDM) 1.4.x before 1.4.3, 1.6.x before 1.6.2, and 1.7.x before 1.7.14 uses 0664 permissions for the temporary .Xauthority file, which allows local users to obtain sensitive information by reading the file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-4331?
CVE-2013-4331 has a medium severity rating due to the potential for local users to access sensitive information.
How do I fix CVE-2013-4331?
To fix CVE-2013-4331, upgrade Light Display Manager to version 1.4.3 or higher, 1.6.2 or higher, or 1.7.14 or higher.
What software versions are affected by CVE-2013-4331?
CVE-2013-4331 affects LightDM versions 1.4.x before 1.4.3, 1.6.x before 1.6.2, and 1.7.x before 1.7.14.
What kind of information could be compromised due to CVE-2013-4331?
CVE-2013-4331 could allow local users to read sensitive information stored in the temporary .Xauthority file.
Is CVE-2013-4331 a remote or local vulnerability?
CVE-2013-4331 is a local vulnerability, meaning it can only be exploited by users with local access to the system.