ISOMAN

CVE

CVE-2019-3825

A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user's session.

Severity
MEDIUM
CVSS
6.3
Published
Modified

Linked Releases

DistributionReleaseStatusEvidence
Ubuntu18.04.6 amd64 desktopunknownsource
Ubuntu18.04.6 amd64 live-serverunknownsource

References

  1. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3825
  2. https://usn.ubuntu.com/3892-1/
  3. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3825
  4. https://usn.ubuntu.com/3892-1/