fkie_cve-2013-7273
Vulnerability from fkie_nvd
Published
2014-04-29 14:38
Modified
2025-04-12 10:46
Severity ?
Summary
GNOME Display Manager (gdm) 3.4.1 and earlier, when disable-user-list is set to true, allows local users to cause a denial of service (unable to login) by pressing the cancel button after entering a user name.
References
Impacted products
Vendor | Product | Version | |
---|---|---|---|
gnome | gnome_display_manager | * | |
gnome | gnome_display_manager | 3.0.0 | |
gnome | gnome_display_manager | 3.0.2 | |
gnome | gnome_display_manager | 3.0.3 | |
gnome | gnome_display_manager | 3.0.4 | |
gnome | gnome_display_manager | 3.1.2 | |
gnome | gnome_display_manager | 3.1.90 | |
gnome | gnome_display_manager | 3.1.91 | |
gnome | gnome_display_manager | 3.1.92 | |
gnome | gnome_display_manager | 3.2.0 | |
gnome | gnome_display_manager | 3.2.1 | |
gnome | gnome_display_manager | 3.2.1.1 | |
gnome | gnome_display_manager | 3.3.92 | |
gnome | gnome_display_manager | 3.3.92.1 | |
gnome | gnome_display_manager | 3.4.0 | |
gnome | gnome_display_manager | 3.4.0.1 |
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:*:*:*:*:*:*:*:*", "matchCriteriaId": "A03CEC5C-0531-471B-BBC5-875594C023E0", "versionEndIncluding": "3.4.1", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.0.0:*:*:*:*:*:*:*", "matchCriteriaId": "A924803A-0B83-4B1B-ABDC-A70DA177083E", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.0.2:*:*:*:*:*:*:*", "matchCriteriaId": "C1363D67-26B1-4953-9057-6791BB10EBC2", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.0.3:*:*:*:*:*:*:*", "matchCriteriaId": "FEBD92F2-8DD0-401A-A767-DF86AFEFA503", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.0.4:*:*:*:*:*:*:*", "matchCriteriaId": "D1E0F9CF-17D7-48D5-A424-1083ED2955F1", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "D23E1E2B-7F86-4F73-B173-A65C564EFFEA", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.1.90:*:*:*:*:*:*:*", "matchCriteriaId": "BC8CD7CA-3AE2-4150-A69A-E92CC9A45F41", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.1.91:*:*:*:*:*:*:*", "matchCriteriaId": "0237EC90-AAED-434A-A1F0-BEFF2753CC05", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.1.92:*:*:*:*:*:*:*", "matchCriteriaId": "D955B0D8-F0A2-4081-80D7-6EBEB1085E6A", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.2.0:*:*:*:*:*:*:*", "matchCriteriaId": "96AD9BD6-C298-4737-843F-C114C77D579C", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "5B94C88A-E9DE-4535-9E8E-A8271E805B60", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.2.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "7E51F953-63A6-4DAC-AA05-54277D052971", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.3.92:*:*:*:*:*:*:*", "matchCriteriaId": "EE255193-9B22-448A-A8FA-B0ED0F98CFEB", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.3.92.1:*:*:*:*:*:*:*", "matchCriteriaId": "D6111034-0898-45CC-9A3A-17176C671BB4", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.4.0:*:*:*:*:*:*:*", "matchCriteriaId": "5315E37D-5C32-47FA-B358-DB14C064BC36", "vulnerable": true }, { "criteria": "cpe:2.3:a:gnome:gnome_display_manager:3.4.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "6BA75FBE-113F-4ED5-BBB7-A889CE9B3091", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "GNOME Display Manager (gdm) 3.4.1 and earlier, when disable-user-list is set to true, allows local users to cause a denial of service (unable to login) by pressing the cancel button after entering a user name." }, { "lang": "es", "value": "GNOME Display Manager (gdm) 3.4.1 y anteriores, cuando \"disable-user-list\" est\u00e1 configurado como \"true\", permite a usuarios locales causar una denegaci\u00f3n de servicio (incapacidad de iniciar sesi\u00f3n) al pulsar el bot\u00f3n Cancel despu\u00e9s de escribir un nombre de usuario." } ], "id": "CVE-2013-7273", "lastModified": "2025-04-12T10:46:40.837", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "LOW", "cvssData": { "accessComplexity": "LOW", "accessVector": "LOCAL", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.1, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:L/AC:L/Au:N/C:N/I:N/A:P", "version": "2.0" }, "exploitabilityScore": 3.9, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false } ] }, "published": "2014-04-29T14:38:49.857", "references": [ { "source": "cve@mitre.org", "url": "http://www.openwall.com/lists/oss-security/2014/01/07/10" }, { "source": "cve@mitre.org", "url": "http://www.openwall.com/lists/oss-security/2014/01/07/16" }, { "source": "cve@mitre.org", "url": "https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=683338" }, { "source": "cve@mitre.org", "url": "https://bugzilla.gnome.org/show_bug.cgi?id=704284" }, { "source": "cve@mitre.org", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1050745" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.openwall.com/lists/oss-security/2014/01/07/10" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.openwall.com/lists/oss-security/2014/01/07/16" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=683338" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://bugzilla.gnome.org/show_bug.cgi?id=704284" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1050745" } ], "sourceIdentifier": "cve@mitre.org", "vulnStatus": "Deferred", "weaknesses": [ { "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…