UBUNTU-CVE-2013-7374
Dashboard / Vulnerabilities / UBUNTU-CVE-2013-7374
UBUNTU-CVE-2013-7374
Published: 30 Apr 2014Last Modified: 4 Feb 2026
Upstream:
Aliases:
Summary:
Details: The Ubuntu Date and Time Indicator (aka indicator-datetime) 13.10.0+13.10.x before 13.10.0+13.10.20131023.2-0ubuntu1.1 does not properly restrict access to Evolution, which allows local users to bypass the greeter screen restrictions by clicking the date.
References: https://ubuntu.com/security/CVE-2013-7374, https://ubuntu.com/security/notices/USN-2186-1, https://www.cve.org/CVERecord?id=CVE-2013-7374
Affected packages
Package
Name: indicator-datetime
Purl: pkg:deb/ubuntu/[email protected]+14.04.20131125-0ubuntu1?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
Introduced- 0
Fixed -13.10.0+14.04.20131125-0ubuntu1
Affected versions
13.10.0+13.10.20131016.2-0ubuntu1
13.10.0+13.10.20131023.2-0ubuntu1
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
