CVE-2020-16125MEDIUMCVSS 6.8≥ 3.36, < 3.36.4·≥ 3.38, < 3.38.22020-11-10
CVE-2020-16125 [MEDIUM] CWE-754 CVE-2020-16125: gdm3 versions before 3.36.2 or 3.38.2 would start gnome-initial-setup if gdm3 can't contact the acco
gdm3 versions before 3.36.2 or 3.38.2 would start gnome-initial-setup if gdm3 can't contact the accountservice service via dbus in a timely manner; on Ubuntu (and potentially derivatives) this could be be chained with an additional issue that could allow a local user to create a new privileged account.
cvelistv5nvd