Vulnerabilities (CVE)

Filtered by vendor Lightdm Project Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-3349 1 Lightdm Project 1 Lightdm 2019-12-03 7.2 HIGH 7.8 HIGH
lightdm before 0.9.6 writes in .dmrc and Xauthority files using root permissions while the files are in user controlled folders. A local user can overwrite root-owned files via a symlink, which can allow possible privilege escalation.
CVE-2017-7358 2 Canonical, Lightdm Project 2 Ubuntu Linux, Lightdm 2017-08-16 6.9 MEDIUM 7.3 HIGH
In LightDM through 1.22.0, a directory traversal issue in debian/guest-account.sh allows local attackers to own arbitrary directory path locations and escalate privileges to root when the guest user logs out.