Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2020-16125
Description:gdm3 versions before 3.36.2 or 3.38.2 would start gnome-initial-setup if gdm3 can't contact the accountservice service via dbus in a timely manner; on Ubuntu (and potentially derivatives) this could be be chained with an additional issue that could allow a local user to create a new privileged account.
Test IDs: 1.3.6.1.4.1.25623.1.0.844695   1.3.6.1.4.1.25623.1.1.10.2021.0003   1.3.6.1.4.1.25623.1.0.892434   1.3.6.1.4.1.25623.1.1.4.2020.3799.1   1.3.6.1.4.1.25623.1.1.2.2020.2511   1.3.6.1.4.1.25623.1.1.4.2020.3333.1   1.3.6.1.4.1.25623.1.1.2.2021.1192   1.3.6.1.4.1.25623.1.1.4.2020.3614.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2020-16125
https://bugs.launchpad.net/ubuntu/+source/gdm3/+bug/1900314
https://bugs.launchpad.net/ubuntu/+source/gdm3/+bug/1900314
https://gitlab.gnome.org/GNOME/gdm/-/issues/642
https://gitlab.gnome.org/GNOME/gdm/-/issues/642
https://securitylab.github.com/advisories/GHSL-2020-202-gdm3-LPE-unresponsive-accounts-daemon
https://securitylab.github.com/advisories/GHSL-2020-202-gdm3-LPE-unresponsive-accounts-daemon




© 1998-2025 E-Soft Inc. All rights reserved.