CVE-2003-0549

8 documents5 sources
Severity
5.0MEDIUM
EPSS
0.6%
top 30.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 27
Latest updateApr 29

Description

The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) via a short authorization key name.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

NVDgnome/gdm8 versions+7
NVDredhat/kdebase5 versions+4

Also affects: Enterprise Linux 2.1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-6576-m4v8-mjf3: The X Display Manager Control Protocol (XDMCP) support for GDM before 22022-04-29
CVEList
CVE-2003-0549: The X Display Manager Control Protocol (XDMCP) support for GDM before 22003-08-22

📋Vendor Advisories

2
Red Hat
security flaw2003-08-20
Red Hat
security flaw2003-08-20

💬Community

3
Bugzilla
CVE-2003-0549 security flaw2018-08-16
Bugzilla
CVE-2003-0548 security flaw2018-08-16
Bugzilla
CAN-2003-0548/9 XDMCP GDM DoS2003-08-15
CVE-2003-0549 (MEDIUM CVSS 5) | The X Display Manager Control Proto | cvebase.io