CVE-2017-8900

Priority
Description
LightDM through 1.22.0, when systemd is used in Ubuntu 16.10 and 17.x,
allows physically proximate attackers to bypass intended AppArmor
restrictions and visit the home directories of arbitrary users by
establishing a guest session.
Notes
 tyhicks> This issue was introduced when the user session handling moved from
  upstart to systemd in Ubuntu 16.10.
Assigned-to
tyhicks
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):not-affected
Ubuntu 16.04 LTS (Xenial Xerus):not-affected
More Information

Updated: 2019-03-19 12:29:58 UTC (commit 15472795df7e9de45b82f2d36b8b419b939f97b2)