CVE-2013-4459: Canonical Ubuntu Linux

Low severity, CVSS 3.3. EPSS: 0.4% chance of exploitation in the next 30 days.

LightDM 1.7.5 through 1.8.3 and 1.9.x before 1.9.2 does not apply the AppArmor profile to the Guest account, which allows local users to bypass intended restrictions by leveraging the Guest account.

Affected products

  • Canonical Ubuntu Linux: version 13.10 only
  • Robert Ancell Lightdm: version 1.7.5 only; version 1.7.6 only; version 1.7.7 only; version 1.7.8 only; version 1.7.9 only; version 1.7.10 only; …

Published 2013-11-23. Last modified 2026-06-16.