CVE Vulnerabilities

CVE-2013-4459

Published: Nov 23, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.3 LOW
AV:L/AC:M/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

LightDM 1.7.5 through 1.8.3 and 1.9.x before 1.9.2 does not apply the AppArmor profile to the Guest account, which allows local users to bypass intended restrictions by leveraging the Guest account.

Affected Software

NameVendorStart VersionEnd Version
LightdmRobert_ancell1.7.5 (including)1.7.5 (including)
LightdmRobert_ancell1.7.6 (including)1.7.6 (including)
LightdmRobert_ancell1.7.7 (including)1.7.7 (including)
LightdmRobert_ancell1.7.8 (including)1.7.8 (including)
LightdmRobert_ancell1.7.9 (including)1.7.9 (including)
LightdmRobert_ancell1.7.10 (including)1.7.10 (including)
LightdmRobert_ancell1.7.11 (including)1.7.11 (including)
LightdmRobert_ancell1.7.12 (including)1.7.12 (including)
LightdmRobert_ancell1.7.13 (including)1.7.13 (including)
LightdmRobert_ancell1.7.14 (including)1.7.14 (including)
LightdmRobert_ancell1.7.15 (including)1.7.15 (including)
LightdmRobert_ancell1.7.16 (including)1.7.16 (including)
LightdmRobert_ancell1.7.17 (including)1.7.17 (including)
LightdmRobert_ancell1.7.18 (including)1.7.18 (including)
LightdmRobert_ancell1.8.0 (including)1.8.0 (including)
LightdmRobert_ancell1.8.1 (including)1.8.1 (including)
LightdmRobert_ancell1.8.2 (including)1.8.2 (including)
LightdmRobert_ancell1.8.3 (including)1.8.3 (including)
LightdmRobert_ancell1.9.0 (including)1.9.0 (including)
LightdmRobert_ancell1.9.1 (including)1.9.1 (including)
LightdmUbuntudevel*
LightdmUbuntusaucy*

References