PT-2010-1800 · Gnome · Gnome-Power-Manager
Publicado
2010-09-07
·
Atualizado
2010-09-08
·
CVE-2009-4997
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
gnome-power-manager version 2.27.92
Description
The issue is related to the improper implementation of the lock on suspend and lock on hibernate settings in gnome-power-manager, which might allow physically proximate attackers to access an unattended laptop via a resume action. This problem arose due to a regression following a fix applied a few years earlier.
Recommendations
For gnome-power-manager version 2.27.92, consider disabling the suspend and hibernate functions until a proper fix is applied to ensure the lock on suspend and lock on hibernate settings are correctly implemented.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Gnome-Power-Manager