CVE-2018-20781
—CVSS 3.1
7.8 high
EPSS
1%p72
Published
()
Modified
Description
In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's password is kept in a session-child process spawned from the LightDM daemon. This can expose the credential in cleartext.
In the news0 stories
No ingested article mentions this CVE yet.