Gnome Keyring vulnerabilities
2 known vulnerabilities affecting gnome/gnome_keyring.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2012-6111HIGHCVSS 7.5v3.2v3.42019-12-20
CVE-2012-6111 [HIGH] CWE-20 CVE-2012-6111: gnome-keyring does not discard stored secrets when using gnome_keyring_lock_all_sync function
gnome-keyring does not discard stored secrets when using gnome_keyring_lock_all_sync function
nvd
CVE-2018-20781HIGHCVSS 7.8fixed in 3.27.22019-02-12
CVE-2018-20781 [HIGH] CWE-522 CVE-2018-20781: In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's password is kept in a session-chi
In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's password is kept in a session-child process spawned from the LightDM daemon. This can expose the credential in cleartext.
nvd