PT-2020-16807 · Gnome+1 · Gdm+1

Guilherme De Almeida Suckevicz

·

Published

2020-12-15

·

Updated

2024-06-15

·

CVE-2020-27837

CVSS v3.1

6.4

Medium

VectorAV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions GDM versions prior to 3.38.2.1
Description A flaw in GDM allows bypassing the lock screen for a user with autologin enabled, accessing their session without authentication due to a race condition in session shutdown handling.
Recommendations For versions prior to 3.38.2.1, update to version 3.38.2.1 or later to resolve the issue.

Fix

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-3514
CVE-2020-27837
OESA-2022-1811
OESA-2022-1812
OPENSUSE-SU-2024:11547-1

Affected Products

Alt Linux
Gdm