Medium severity6.4NVD Advisory· Published Dec 28, 2020· Updated Jun 17, 2026
CVE-2020-27837
CVE-2020-27837
Description
A flaw was found in GDM in versions prior to 3.38.2.1. A race condition in the handling of session shutdown makes it possible to bypass the lock screen for a user that has autologin enabled, accessing their session without authentication. This is similar to CVE-2017-12164, but requires more difficult conditions to exploit.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- GDM/GDMdescription
- cpe:2.3:a:gnome:gnome_display_manager:*:*:*:*:*:*:*:*Range: <3.38.2.1
Patches
Vulnerability mechanics
References
1- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.