First published: Mon Jul 30 2012(Updated: )
GNOME Display Manager (gdm) 3.4.1 and earlier, when disable-user-list is set to true, allows local users to cause a denial of service (unable to login) by pressing the cancel button after entering a user name.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/gdm3 | <=3.4.1-2<=3.4.1-8 | 3.8.3-1 |
debian/gdm3 | 3.30.2-3 3.38.2.1-1 43.0-3 45.0.1-1 | |
GNOME Display Manager | <=3.4.1 | |
GNOME Display Manager | =3.0.0 | |
GNOME Display Manager | =3.0.2 | |
GNOME Display Manager | =3.0.3 | |
GNOME Display Manager | =3.0.4 | |
GNOME Display Manager | =3.1.2 | |
GNOME Display Manager | =3.1.90 | |
GNOME Display Manager | =3.1.91 | |
GNOME Display Manager | =3.1.92 | |
GNOME Display Manager | =3.2.0 | |
GNOME Display Manager | =3.2.1 | |
GNOME Display Manager | =3.2.1.1 | |
GNOME Display Manager | =3.3.92 | |
GNOME Display Manager | =3.3.92.1 | |
GNOME Display Manager | =3.4.0 | |
GNOME Display Manager | =3.4.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-7273 is classified as a denial of service vulnerability affecting GNOME Display Manager.
To fix CVE-2013-7273, upgrade GNOME Display Manager to version 3.8.3-1 or higher.
CVE-2013-7273 affects GNOME Display Manager versions 3.4.1 and earlier.
No, CVE-2013-7273 requires local access to exploit the vulnerability.
The impact of CVE-2013-7273 is that it can lead to denial of service by preventing local users from logging in.