2014-11-08 22:05:49 |
James Walters |
bug |
|
|
added bug |
2014-11-08 22:06:12 |
James Walters |
information type |
Private Security |
Public |
|
2014-11-09 20:52:56 |
Robert Ancell |
lightdm: status |
New |
Triaged |
|
2014-11-09 20:55:07 |
Robert Ancell |
lightdm: importance |
Undecided |
Wishlist |
|
2014-11-09 22:05:15 |
Launchpad Janitor |
branch linked |
|
lp:~robert-ancell/lightdm/listen-address |
|
2014-11-09 22:08:25 |
Robert Ancell |
bug task added |
|
lightdm (Ubuntu) |
|
2014-11-09 22:09:12 |
Robert Ancell |
lightdm: milestone |
|
1.13.0 |
|
2014-11-09 22:09:37 |
Robert Ancell |
nominated for series |
|
Ubuntu Trusty |
|
2014-11-09 22:09:37 |
Robert Ancell |
bug task added |
|
lightdm (Ubuntu Trusty) |
|
2014-11-09 22:09:37 |
Robert Ancell |
nominated for series |
|
Ubuntu Vivid |
|
2014-11-09 22:09:37 |
Robert Ancell |
bug task added |
|
lightdm (Ubuntu Vivid) |
|
2014-11-09 22:09:37 |
Robert Ancell |
nominated for series |
|
Ubuntu Utopic |
|
2014-11-09 22:09:37 |
Robert Ancell |
bug task added |
|
lightdm (Ubuntu Utopic) |
|
2014-11-09 22:10:03 |
Robert Ancell |
nominated for series |
|
Ubuntu Precise |
|
2014-11-09 22:10:03 |
Robert Ancell |
bug task added |
|
lightdm (Ubuntu Precise) |
|
2014-11-09 22:10:25 |
Robert Ancell |
nominated for series |
|
lightdm/1.12 |
|
2014-11-09 22:10:25 |
Robert Ancell |
bug task added |
|
lightdm/1.12 |
|
2014-11-09 22:10:25 |
Robert Ancell |
nominated for series |
|
lightdm/1.10 |
|
2014-11-09 22:10:25 |
Robert Ancell |
bug task added |
|
lightdm/1.10 |
|
2014-11-09 22:10:25 |
Robert Ancell |
nominated for series |
|
lightdm/1.2 |
|
2014-11-09 22:10:25 |
Robert Ancell |
bug task added |
|
lightdm/1.2 |
|
2014-11-09 22:10:36 |
Robert Ancell |
lightdm/1.10: status |
New |
Triaged |
|
2014-11-09 22:10:38 |
Robert Ancell |
lightdm/1.12: status |
New |
Triaged |
|
2014-11-09 22:10:51 |
Robert Ancell |
lightdm (Ubuntu Precise): status |
New |
Triaged |
|
2014-11-09 22:10:58 |
Robert Ancell |
lightdm/1.2: importance |
Undecided |
Wishlist |
|
2014-11-09 22:11:10 |
Robert Ancell |
lightdm (Ubuntu Precise): importance |
Undecided |
Wishlist |
|
2014-11-09 22:11:18 |
Robert Ancell |
lightdm/1.10: milestone |
|
1.10.4 |
|
2014-11-09 22:11:26 |
Robert Ancell |
lightdm/1.12: milestone |
|
1.12.2 |
|
2014-11-09 22:12:21 |
Robert Ancell |
lightdm/1.2: milestone |
|
1.2.9 |
|
2014-11-09 22:12:23 |
Robert Ancell |
lightdm/1.12: importance |
Undecided |
Wishlist |
|
2014-11-09 22:12:26 |
Robert Ancell |
lightdm/1.10: importance |
Undecided |
Wishlist |
|
2014-11-09 22:12:32 |
Robert Ancell |
lightdm (Ubuntu Trusty): status |
New |
Triaged |
|
2014-11-09 22:13:00 |
Robert Ancell |
lightdm (Ubuntu Utopic): importance |
Undecided |
Wishlist |
|
2014-11-09 22:13:06 |
Robert Ancell |
lightdm (Ubuntu Vivid): importance |
Undecided |
Wishlist |
|
2014-11-09 22:13:17 |
Robert Ancell |
lightdm (Ubuntu Trusty): importance |
Undecided |
Wishlist |
|
2014-11-09 22:13:19 |
Robert Ancell |
lightdm/1.2: status |
New |
Triaged |
|
2014-11-09 22:13:23 |
Robert Ancell |
lightdm (Ubuntu Utopic): status |
New |
Triaged |
|
2014-11-09 22:13:26 |
Robert Ancell |
lightdm (Ubuntu Vivid): status |
New |
Triaged |
|
2014-11-09 22:14:28 |
Robert Ancell |
summary |
VNC server cannot be configured to listen on specific interfaces |
VNC / XDMCP server cannot be configured to listen on specific interfaces |
|
2014-11-12 22:46:15 |
Robert Ancell |
lightdm/1.10: status |
Triaged |
Fix Released |
|
2014-11-12 22:46:25 |
Robert Ancell |
lightdm/1.2: status |
Triaged |
Fix Released |
|
2014-11-12 22:46:28 |
Robert Ancell |
lightdm/1.12: status |
Triaged |
Fix Released |
|
2014-11-12 22:46:43 |
Robert Ancell |
lightdm: status |
Triaged |
Fix Released |
|
2014-11-13 01:24:37 |
Robert Ancell |
lightdm: status |
Fix Released |
Triaged |
|
2014-11-13 01:24:41 |
Robert Ancell |
lightdm: milestone |
1.13.0 |
1.13.1 |
|
2014-11-13 01:24:47 |
Robert Ancell |
lightdm/1.10: milestone |
1.10.4 |
1.10.5 |
|
2014-11-13 01:24:51 |
Robert Ancell |
lightdm/1.12: milestone |
1.12.2 |
1.12.3 |
|
2014-11-13 01:24:55 |
Robert Ancell |
lightdm/1.2: milestone |
1.2.9 |
1.2.10 |
|
2014-11-13 01:24:58 |
Robert Ancell |
lightdm/1.2: status |
Fix Released |
In Progress |
|
2014-11-13 01:25:02 |
Robert Ancell |
lightdm/1.10: status |
Fix Released |
In Progress |
|
2014-11-13 01:25:04 |
Robert Ancell |
lightdm/1.12: status |
Fix Released |
In Progress |
|
2014-11-13 01:25:07 |
Robert Ancell |
lightdm: status |
Triaged |
In Progress |
|
2014-11-13 01:47:16 |
Robert Ancell |
description |
There doesn't seem to be any obvious way to force LightDM's VNC server to listen on only specified interfaces, most notably localhost. This creates a security issue, as the best and most secure way to access a VNC server is through an SSH tunnel where the client will only connect to its localhost on a particular port having all connections through the tunnel to the server's localhost port.
If there is a proper way to do this or some sort of work-around, I would be very interested in how to do so. As of right now, this makes LightDM's VNC server unusable for me. |
[Impact]
The XDMCP and VNC servers in LightDM allow connections on any network interface. It is desirable for these to be limited to a particular interface to limit who can connect (i.e. only allow local connections on 127.0.0.1).
[Test Case]
1. Enable the VNC server in LightDM in lightdm.conf:
[VNCServer]
enabled=true
listen-address=127.0.0.1
2. Start LightDM
With this setup you should only be able to make a local connection.
[Regression potential]
Low. If the option is not set LightDM has the old behaviour. |
|
2015-01-14 00:58:56 |
Robert Ancell |
lightdm: milestone |
1.13.1 |
1.13.2 |
|
2015-03-10 02:47:42 |
Robert Ancell |
lightdm: milestone |
1.13.2 |
1.13.4 |
|
2015-03-10 03:18:06 |
Robert Ancell |
lightdm/1.12: milestone |
1.12.3 |
1.12.4 |
|
2015-03-10 03:59:02 |
Robert Ancell |
lightdm/1.10: milestone |
1.10.5 |
1.10.6 |
|
2015-03-10 03:59:08 |
Robert Ancell |
lightdm: status |
In Progress |
Triaged |
|
2015-03-10 03:59:10 |
Robert Ancell |
lightdm/1.10: status |
In Progress |
Triaged |
|
2015-03-10 03:59:11 |
Robert Ancell |
lightdm/1.12: status |
In Progress |
Triaged |
|
2015-03-10 03:59:13 |
Robert Ancell |
lightdm/1.2: status |
In Progress |
Triaged |
|
2015-03-10 04:04:35 |
Robert Ancell |
lightdm/1.2: milestone |
1.2.10 |
1.2.11 |
|
2015-03-23 21:34:13 |
Robert Ancell |
lightdm: milestone |
1.13.3 |
1.15.0 |
|
2015-05-25 23:40:05 |
Robert Ancell |
lightdm: milestone |
1.15.0 |
1.15.2 |
|
2015-07-24 00:21:33 |
Robert Ancell |
lightdm (Ubuntu Utopic): status |
Triaged |
Won't Fix |
|
2015-07-24 00:21:36 |
Robert Ancell |
lightdm/1.2: status |
Triaged |
Won't Fix |
|
2015-07-24 01:16:38 |
Robert Ancell |
lightdm/1.12: status |
Triaged |
Won't Fix |
|
2015-07-24 01:16:40 |
Robert Ancell |
lightdm/1.2: status |
Won't Fix |
Triaged |
|
2015-08-05 03:28:08 |
Robert Ancell |
bug task deleted |
lightdm/1.12 |
|
|
2015-08-05 03:28:16 |
Robert Ancell |
bug task deleted |
lightdm (Ubuntu Utopic) |
|
|
2015-08-05 03:39:12 |
Robert Ancell |
nominated for series |
|
lightdm/1.14 |
|
2015-08-05 03:39:12 |
Robert Ancell |
bug task added |
|
lightdm/1.14 |
|
2015-08-05 03:39:34 |
Robert Ancell |
lightdm/1.14: status |
New |
Triaged |
|
2015-08-05 03:39:37 |
Robert Ancell |
lightdm/1.14: importance |
Undecided |
Wishlist |
|
2015-08-05 03:39:51 |
Robert Ancell |
lightdm/1.14: milestone |
|
1.14.3 |
|
2015-08-05 03:47:14 |
Robert Ancell |
lightdm: milestone |
1.15.2 |
1.15.1 |
|
2015-08-05 03:47:39 |
Robert Ancell |
lightdm: status |
Triaged |
Fix Committed |
|
2015-08-05 03:47:41 |
Robert Ancell |
lightdm/1.10: status |
Triaged |
Fix Committed |
|
2015-08-05 03:47:42 |
Launchpad Janitor |
branch linked |
|
lp:lightdm |
|
2015-08-05 03:47:44 |
Robert Ancell |
lightdm/1.14: status |
Triaged |
Fix Committed |
|
2015-08-05 03:47:45 |
Robert Ancell |
lightdm/1.2: status |
Triaged |
Fix Committed |
|
2015-08-05 04:05:51 |
Launchpad Janitor |
branch linked |
|
lp:lightdm/1.14 |
|
2015-08-05 04:11:40 |
Launchpad Janitor |
branch linked |
|
lp:lightdm/1.10 |
|
2015-08-05 04:19:42 |
Launchpad Janitor |
branch linked |
|
lp:lightdm/1.2 |
|
2015-08-05 05:10:30 |
Robert Ancell |
lightdm: status |
Fix Committed |
Fix Released |
|
2015-08-05 05:14:55 |
Launchpad Janitor |
branch linked |
|
lp:ubuntu/wily-proposed/lightdm |
|
2015-08-05 14:01:15 |
Launchpad Janitor |
lightdm (Ubuntu): status |
Triaged |
Fix Released |
|
2015-11-03 03:21:50 |
Robert Ancell |
lightdm (Ubuntu Vivid): status |
Triaged |
In Progress |
|
2015-11-03 03:21:52 |
Robert Ancell |
lightdm (Ubuntu Vivid): assignee |
|
Robert Ancell (robert-ancell) |
|
2015-11-03 04:12:14 |
Robert Ancell |
lightdm/1.14: status |
Fix Committed |
Fix Released |
|
2015-11-12 19:09:10 |
Brian Murray |
lightdm (Ubuntu Vivid): status |
In Progress |
Fix Committed |
|
2015-11-12 19:09:12 |
Brian Murray |
bug |
|
|
added subscriber Ubuntu Stable Release Updates Team |
2015-11-12 19:09:14 |
Brian Murray |
bug |
|
|
added subscriber SRU Verification |
2015-11-12 19:09:22 |
Brian Murray |
tags |
vnc |
verification-needed vnc |
|
2015-11-16 03:40:03 |
Robert Ancell |
tags |
verification-needed vnc |
verification-done-vivid vnc |
|
2015-12-02 19:56:26 |
Chris J Arges |
lightdm (Ubuntu Trusty): status |
Triaged |
Fix Committed |
|
2015-12-02 19:56:32 |
Chris J Arges |
tags |
verification-done-vivid vnc |
verification-done-vivid verification-needed vnc |
|
2015-12-04 00:07:14 |
Robert Ancell |
tags |
verification-done-vivid verification-needed vnc |
verification-done-trusty verification-done-vivid vnc |
|
2015-12-09 14:42:20 |
Launchpad Janitor |
lightdm (Ubuntu Trusty): status |
Fix Committed |
Fix Released |
|
2015-12-09 14:42:41 |
Chris J Arges |
removed subscriber Ubuntu Stable Release Updates Team |
|
|
|
2015-12-16 14:46:09 |
Launchpad Janitor |
lightdm (Ubuntu Vivid): status |
Fix Committed |
Fix Released |
|
2021-10-14 01:37:57 |
Steve Langasek |
lightdm (Ubuntu Precise): status |
Triaged |
Won't Fix |
|