The start_authentication function in lightdm-gtk-greeter.c in LightDM GTK+ Greeter before 1.7.1 does not properly handle the return value from the lightdm_greeter_get_authentication_user function, which allows local users to cause a denial of service (NULL pointer dereference) via an empty username.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2014-01-22 17:55
Updated : 2018-10-30 09:27
NVD link : CVE-2014-0979
Mitre link : CVE-2014-0979
JSON object : View
CWE
Products Affected
lightdm_gtk\+_greeter_project
- lightdm_gtk\+_greeter
opensuse
- opensuse