<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:40:45 +0000</lastBuildDate>
    <item>
      <title>ALSA-2020:1766 — Moderate: GNOME security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2020:1766</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: accountsservice-devel, AlmaLinux:8: baobab, AlmaLinux:8: clutter, AlmaLinux:8: clutter-devel, AlmaLinux:8: clutter-doc, AlmaLinux:8: gjs-devel, AlmaLinux:8: gnome-menus, AlmaLinux:8: gnome-menus-devel, AlmaLinux:8: gnome-tweaks, AlmaLinux:8: mozjs52 and 5 more&lt;/p&gt;
&lt;p&gt;GNOME is the default desktop environment of AlmaLinux.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* LibRaw: stack-based buffer overflow in the parse_makernote function of dcraw_common.cpp (CVE-2018-20337)&lt;/p&gt;
&lt;p&gt;* gdm: lock screen bypass when timed login is enabled (CVE-2019-3825)&lt;/p&gt;
&lt;p&gt;* gvfs: mishandling of file ownership in daemon/gvfsbackendadmin.c (CVE-2019-12447)&lt;/p&gt;
&lt;p&gt;* gvfs: race condition in daemon/gvfsbackendadmin.c due to admin backend not implementing query_info_on_read/write (CVE-2019-12448)&lt;/p&gt;
&lt;p&gt;* gvfs: mishandling of file&amp;#39;s user and group ownership in daemon/gvfsbackendadmin.c due to unavailability of root privileges (CVE-2019-12449)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: accountsservice-devel, AlmaLinux:8: baobab, AlmaLinux:8: clutter, AlmaLinux:8: clutter-devel, AlmaLinux:8: clutter-doc, AlmaLinux:8: gjs-devel, AlmaLinux:8: gnome-menus, AlmaLinux:8: gnome-menus-devel, AlmaLinux:8: gnome-tweaks, AlmaLinux:8: mozjs52 and 5 more&lt;/p&gt;
&lt;p&gt;GNOME is the default desktop environment of AlmaLinux.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* LibRaw: stack-based buffer overflow in the parse_makernote function of dcraw_common.cpp (CVE-2018-20337)&lt;/p&gt;
&lt;p&gt;* gdm: lock screen bypass when timed login is enabled (CVE-2019-3825)&lt;/p&gt;
&lt;p&gt;* gvfs: mishandling of file ownership in daemon/gvfsbackendadmin.c (CVE-2019-12447)&lt;/p&gt;
&lt;p&gt;* gvfs: race condition in daemon/gvfsbackendadmin.c due to admin backend not implementing query_info_on_read/write (CVE-2019-12448)&lt;/p&gt;
&lt;p&gt;* gvfs: mishandling of file&amp;#39;s user and group ownership in daemon/gvfsbackendadmin.c due to unavailability of root privileges (CVE-2019-12449)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2020:1766</guid>
    </item>
    <item>
      <title>bdu:2020-02203</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-02203</link>
      <description>bdu:2020-02203</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-02203</guid>
    </item>
    <item>
      <title>EUVD-2026-49783</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-49783</link>
      <description>EUVD-2026-49783</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-49783</guid>
    </item>
    <item>
      <title>fkie_cve-2019-3825</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-3825</link>
      <description>&lt;p&gt;A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user&amp;#39;s session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user&amp;#39;s session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-3825</guid>
    </item>
    <item>
      <title>GHSA-pfhm-wwqj-c296</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-pfhm-wwqj-c296</link>
      <description>&lt;p&gt;A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user&amp;#39;s session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user&amp;#39;s session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-pfhm-wwqj-c296</guid>
    </item>
    <item>
      <title>gsd-2019-3825</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-3825</link>
      <description>gsd-2019-3825</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-3825</guid>
    </item>
    <item>
      <title>OESA-2021-1044 — gdm security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1044</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS: gdm, openEuler:20.03-LTS-SP1: gdm&lt;/p&gt;
&lt;p&gt;The GNOME Display Manager is a system service that is responsible for providing graphical log-ins and managing local and remote displays, and if the session doesn&amp;#39;t provide a display server, GDM will start the display server. It also provides initiate functionality for user-switching, so multiple users can be logged in at the same time.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user&amp;#39;s session.(CVE-2019-3825)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS: gdm, openEuler:20.03-LTS-SP1: gdm&lt;/p&gt;
&lt;p&gt;The GNOME Display Manager is a system service that is responsible for providing graphical log-ins and managing local and remote displays, and if the session doesn&amp;#39;t provide a display server, GDM will start the display server. It also provides initiate functionality for user-switching, so multiple users can be logged in at the same time.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user&amp;#39;s session.(CVE-2019-3825)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1044</guid>
    </item>
    <item>
      <title>openSUSE-SU-2019:0310-1 — Security update for gdm</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2019:0310-1</link>
      <description>&lt;p&gt;Security update for gdm&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for gdm&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2019:0310-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2019:0527-1 — Security update for gdm</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2019:0527-1</link>
      <description>&lt;p&gt;Security update for gdm&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for gdm&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2019:0527-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2019-3825</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-3825</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gdm3, Ubuntu:18.04:LTS: gdm3&lt;/p&gt;
&lt;p&gt;A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user&amp;#39;s session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: gdm3, Ubuntu:18.04:LTS: gdm3&lt;/p&gt;
&lt;p&gt;A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user&amp;#39;s session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-3825</guid>
    </item>
  </channel>
</rss>
