Gnome

Gnome Keyring

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.39%
  • Published 20.12.2019 15:15:11
  • Last modified 21.11.2024 01:45:50

gnome-keyring does not discard stored secrets when using gnome_keyring_lock_all_sync function

  • EPSS 4.7%
  • Published 12.02.2019 17:29:00
  • Last modified 21.11.2024 04:02:09

In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's password is kept in a session-child process spawned from the LightDM daemon. This can expose the credential in cleartext.