All errata/p9/ALT-PU-2019-1900-1
ALT-PU-2019-1900-1

Package update lightdm in branch p9

Version1.30.0-alt1
Published2019-05-23
Max severityHIGH
Severity:

Closed issues (1)

CVE-2017-7358
HIGH7.3

In LightDM through 1.22.0, a directory traversal issue in debian/guest-account.sh allows local attackers to own arbitrary directory path locations and escalate privileges to root when the guest user logs out.

Published: 2017-04-05Modified: 2025-04-20
CVSS 2.0MEDIUM 6.9
CVSS:2.0/AV:L/AC:M/Au:N/C:C/I:C/A:C
CVSS 3.xHIGH 7.3
CVSS:3.x/CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H