This bug was fixed in the package lightdm - 1.22.0-0ubuntu2
---------------
lightdm (1.22.0-0ubuntu2) zesty; urgency=medium
* SECURITY UPDATE: Directory traversal allowing arbitrary directory
ownership and privilege escalation (LP: #1677924)
- debian/guest-account.sh: Detect existing malicious guest user home dirs
before proceeding with guest user creation
- CVE-2017-7358
-- Robert Ancell <[email protected]> Wed, 05 Apr 2017
10:34:32 +1200
** Changed in: lightdm (Ubuntu Zesty)
Status: Triaged => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1677924
Title:
Local privilege escalation via guest user login
To manage notifications about this bug go to:
https://bugs.launchpad.net/lightdm/+bug/1677924/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs