GNOME Display Manager (gdm) 2.x before 2.32.1 allows local users to change the ownership of arbitrary files via a symlink attack on a (1) dmrc or (2) face icon file under /var/cache/gdm/.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-03-31 15:55
Updated : 2017-08-16 18:33
NVD link : CVE-2011-0727
Mitre link : CVE-2011-0727
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
gnome
- gdm