fkie_cve-2013-4169
Vulnerability from fkie_nvd
Published
2013-09-10 19:55
Modified
2025-04-11 00:51
Severity ?
Summary
GNOME Display Manager (gdm) before 2.21.1 allows local users to change permissions of arbitrary directories via a symlink attack on /tmp/.X11-unix/.
Impacted products
Vendor Product Version
gnome gnome_display_manager *
gnome gnome_display_manager 0.7
gnome gnome_display_manager 1.0
gnome gnome_display_manager 2.0
gnome gnome_display_manager 2.2
gnome gnome_display_manager 2.13
gnome gnome_display_manager 2.14
gnome gnome_display_manager 2.14.1
gnome gnome_display_manager 2.14.2
gnome gnome_display_manager 2.14.3
gnome gnome_display_manager 2.14.4
gnome gnome_display_manager 2.14.5
gnome gnome_display_manager 2.14.6
gnome gnome_display_manager 2.14.7
gnome gnome_display_manager 2.14.8
gnome gnome_display_manager 2.14.9
gnome gnome_display_manager 2.14.10
gnome gnome_display_manager 2.14.11
gnome gnome_display_manager 2.14.12
gnome gnome_display_manager 2.15
gnome gnome_display_manager 2.16
gnome gnome_display_manager 2.16.1
gnome gnome_display_manager 2.16.2
gnome gnome_display_manager 2.17
gnome gnome_display_manager 2.18
gnome gnome_display_manager 2.18.1
gnome gnome_display_manager 2.18.2
gnome gnome_display_manager 2.18.3
gnome gnome_display_manager 2.19
gnome gnome_display_manager 2.19.1
gnome gnome_display_manager 2.19.2
gnome gnome_display_manager 2.19.3
gnome gnome_display_manager 2.19.4
gnome gnome_display_manager 2.20.0
gnome gnome_display_manager 2.20.1
gnome gnome_display_manager 2.20.2
gnome gnome_display_manager 2.20.3
gnome gnome_display_manager 2.20.4
gnome gnome_display_manager 2.20.5
gnome gnome_display_manager 2.20.6
gnome gnome_display_manager 2.20.7
gnome gnome_display_manager 2.20.8
gnome gnome_display_manager 2.20.9
gnome gnome_display_manager 2.20.10



{
  "configurations": [
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "DBC23F87-6F53-4EF3-B981-FCD612CBE426",
              "versionEndIncluding": "2.21",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:0.7:*:*:*:*:*:*:*",
              "matchCriteriaId": "0D287796-C4D6-40D0-9ED8-E9B3EFC1CEAE",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:1.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "7D676F09-CB94-4CC8-9326-8607ED6A88FC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "73B19CDB-97D4-46C2-B615-0A95BD58538F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "9A4ABCBE-F45A-438B-BE48-700540806528",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.13:*:*:*:*:*:*:*",
              "matchCriteriaId": "9E9E9130-3342-44E5-A5BE-F167B7188218",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14:*:*:*:*:*:*:*",
              "matchCriteriaId": "9558A75E-A157-4E9F-BE7A-CE362D8E93BA",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "5BBE3DE7-0C4E-4B87-9C02-FBD3955883E2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "F4C799CC-3D88-435F-86BF-8BC5958196AF",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "C7D0B9EF-B3C1-4D8B-9D3A-83EE6C8C539A",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.4:*:*:*:*:*:*:*",
              "matchCriteriaId": "81FC449F-005F-4E90-904F-3B899C1495B5",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.5:*:*:*:*:*:*:*",
              "matchCriteriaId": "5C6FC127-1087-47C8-954C-3A02B24F9EF3",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.6:*:*:*:*:*:*:*",
              "matchCriteriaId": "03EF56BA-8DE7-484D-ABFB-DCBC5358FA72",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.7:*:*:*:*:*:*:*",
              "matchCriteriaId": "2219648D-2B41-45CC-887B-0E342F5E3500",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.8:*:*:*:*:*:*:*",
              "matchCriteriaId": "FEB4077A-4C1F-44CD-8A05-194F6D45032A",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.9:*:*:*:*:*:*:*",
              "matchCriteriaId": "351ABE89-C0B8-4427-853C-1407F8708736",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.10:*:*:*:*:*:*:*",
              "matchCriteriaId": "DDF5593E-4F9A-4A67-B4D5-7A8DE19F0E3F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.11:*:*:*:*:*:*:*",
              "matchCriteriaId": "C4AD1FDB-19F1-46B2-82CF-E5B484C39DDE",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.14.12:*:*:*:*:*:*:*",
              "matchCriteriaId": "9CD79F95-9F73-444A-96E5-C0ADDD1D6BFD",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.15:*:*:*:*:*:*:*",
              "matchCriteriaId": "1D4D4507-237D-433E-8A4F-AE1F2058708B",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.16:*:*:*:*:*:*:*",
              "matchCriteriaId": "7725A058-2A84-4D7B-B910-660C16441FBF",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.16.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "4B79A55A-ACFD-4F3C-8E88-1BE569FD80CF",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.16.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "3F5232B5-728D-44BE-AAA5-151E994BE11F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.17:*:*:*:*:*:*:*",
              "matchCriteriaId": "EB7A9E40-AABC-4B1B-A1D1-6334F49F8867",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.18:*:*:*:*:*:*:*",
              "matchCriteriaId": "F97B6ACF-DA58-4660-BC0A-A6C0D9F98633",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.18.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "6D380C4D-5345-4B28-81A1-F8528CB41771",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.18.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "7B50EC69-19E4-4AF9-8AA6-538F1A978FEB",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.18.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "F835130F-4D7E-444D-AFE3-8B4B87372096",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.19:*:*:*:*:*:*:*",
              "matchCriteriaId": "C4097FC3-4546-451C-8269-15E9BE539A2C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.19.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "FA6357F2-BCDF-49FD-83BA-16E3AE833896",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.19.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "61615ECC-C7A1-43B1-9B41-F1C4601EB312",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.19.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "15B8F7CA-D526-4171-A1F5-3CDC99037B27",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.19.4:*:*:*:*:*:*:*",
              "matchCriteriaId": "B2E94D92-8B07-4DFC-B324-5BB19407D29A",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "C8C72BE3-BDD4-4A88-8E2A-7C8224B02F76",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "706CCECA-D2FC-40E6-B587-B6E3DD62075D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "8DA2D465-D13D-4871-A15F-BD54C602867D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "D0C53894-4DA5-425F-9DEB-C0371B206FBC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.4:*:*:*:*:*:*:*",
              "matchCriteriaId": "06EB6BB7-9C4E-4D6B-8ED1-3588E290ADEC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.5:*:*:*:*:*:*:*",
              "matchCriteriaId": "409CA831-8DD2-4ED0-9E46-E6EACA01D818",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.6:*:*:*:*:*:*:*",
              "matchCriteriaId": "D80F8AA1-0DBA-4B4A-8003-0977632EB92D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.7:*:*:*:*:*:*:*",
              "matchCriteriaId": "67E978B3-1614-4591-B58E-9BA781AE0BE3",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.8:*:*:*:*:*:*:*",
              "matchCriteriaId": "C5535C17-2D38-49EC-8D44-F99F0B2BEB5E",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.9:*:*:*:*:*:*:*",
              "matchCriteriaId": "FE4EA4E1-3B52-4DD1-930D-8E88A2494D22",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:gnome:gnome_display_manager:2.20.10:*:*:*:*:*:*:*",
              "matchCriteriaId": "943E0B71-8FC7-46FB-BA5D-E3A2FD78636F",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ]
    }
  ],
  "cveTags": [],
  "descriptions": [
    {
      "lang": "en",
      "value": "GNOME Display Manager (gdm) before 2.21.1 allows local users to change permissions of arbitrary directories via a symlink attack on /tmp/.X11-unix/."
    },
    {
      "lang": "es",
      "value": "GNOME Display Manager (gdm) anteriores a 2.21.1 permiten a usuarios locales cambiar permisos de directorios arbitrarios a trav\u00e9s de un ataque de enlaces simb\u00f3licos sobre /tmp/.X11-unix/."
    }
  ],
  "id": "CVE-2013-4169",
  "lastModified": "2025-04-11T00:51:21.963",
  "metrics": {
    "cvssMetricV2": [
      {
        "acInsufInfo": false,
        "baseSeverity": "MEDIUM",
        "cvssData": {
          "accessComplexity": "MEDIUM",
          "accessVector": "LOCAL",
          "authentication": "NONE",
          "availabilityImpact": "COMPLETE",
          "baseScore": 6.9,
          "confidentialityImpact": "COMPLETE",
          "integrityImpact": "COMPLETE",
          "vectorString": "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "version": "2.0"
        },
        "exploitabilityScore": 3.4,
        "impactScore": 10.0,
        "obtainAllPrivilege": false,
        "obtainOtherPrivilege": false,
        "obtainUserPrivilege": false,
        "source": "nvd@nist.gov",
        "type": "Primary",
        "userInteractionRequired": false
      }
    ]
  },
  "published": "2013-09-10T19:55:11.207",
  "references": [
    {
      "source": "secalert@redhat.com",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://rhn.redhat.com/errata/RHSA-2013-1213.html"
    },
    {
      "source": "secalert@redhat.com",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://secunia.com/advisories/54661"
    },
    {
      "source": "secalert@redhat.com",
      "tags": [
        "Patch"
      ],
      "url": "https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=988498"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://rhn.redhat.com/errata/RHSA-2013-1213.html"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://secunia.com/advisories/54661"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Patch"
      ],
      "url": "https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=988498"
    }
  ],
  "sourceIdentifier": "secalert@redhat.com",
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "description": [
        {
          "lang": "en",
          "value": "CWE-59"
        }
      ],
      "source": "nvd@nist.gov",
      "type": "Primary"
    }
  ]
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…