CVE Vulnerabilities

CVE-2011-1709

Published: Jun 14, 2011 | Modified: Sep 07, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
4 MODERATE
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V3
Ubuntu

GNOME Display Manager (gdm) before 2.32.2, when glib 2.28 is used, enables execution of a web browser with the uid of the gdm account, which allows local users to gain privileges via vectors involving the x-scheme-handler/http MIME type.

Affected Software

Name Vendor Start Version End Version
Gdm Ubuntu devel *
Gdm Ubuntu hardy *
Gdm Ubuntu natty *

References