Unrated severityNVD Advisory· Published Nov 19, 2019· Updated Aug 6, 2024
CVE-2011-3349
CVE-2011-3349
Description
lightdm before 0.9.6 writes in .dmrc and Xauthority files using root permissions while the files are in user controlled folders. A local user can overwrite root-owned files via a symlink, which can allow possible privilege escalation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- lightdm/lightdmv5Range: before 0.9.6
Patches
Vulnerability mechanics
References
6- access.redhat.com/security/cve/cve-2011-3349mitrex_refsource_MISC
- bugs.debian.org/cgi-bin/bugreport.cgimitrex_refsource_MISC
- bugs.launchpad.net/debian/+source/lightdm/+bug/834079mitrex_refsource_MISC
- seclists.org/oss-sec/2011/q3/393mitrex_refsource_MISC
- security-tracker.debian.org/tracker/CVE-2011-3349mitrex_refsource_MISC
- www.securityfocus.com/bid/50506mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.