Total vulnerabilities in the database
In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's password is kept in a session-child process spawned from the LightDM daemon. This can expose the credential in cleartext.
Software | From | Fixed in |
---|---|---|
gnome / gnome_keyring | - | 3.27.2 |
canonical / ubuntu_linux | 16.04 | 16.04.x |
canonical / ubuntu_linux | 14.04 | 14.04.x |
oracle / zfs_storage_appliance_kit | 8.8 | 8.8.x |