CVE-2012-3466

EUVD-2012-3423
GNOME gnome-keyring 3.4.0 through 3.4.1, when gpg-cache-method is set to "idle" or "timeout," does not properly limit the amount of time a passphrase is cached, which allows attackers to have an unspecified impact via unknown attack vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.4 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 25%
Affected Products (NVD)
VendorProductVersion
gnomegnome-keyring
3.4.0
gnomegnome-keyring
3.4.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
gnome-keyring
bookworm
42.1-1
fixed
bullseye
3.36.0-1
fixed
sid
46.2-1
fixed
squeeze
not-affected
trixie
46.2-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
gnome-keyring
hardy
ignored
lucid
not-affected
natty
not-affected
oneiric
not-affected
precise
not-affected
Common Weakness Enumeration