PT-2019-10161 · Mate · Mate-Screensaver

Sunweaver

·

Publicado

2019-01-09

·

Atualizado

2019-01-30

·

CVE-2018-20681

CVSS v3.1

6.1

Média

VetorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions: mate-screensaver versions prior to 1.20.2
Description: The issue allows physically proximate attackers to view screen content and possibly control applications when the screensaver is locked. This can be achieved by unplugging and re-plugging or power-cycling external output devices, such as those connected via HDMI, VGA, or DVI. In certain scenarios, the attacker may also be able to execute applications, for example, by using a mouse to click on items.
Recommendations: For mate-screensaver versions prior to 1.20.2, update to version 1.20.2 or later to resolve the issue.

Exploit

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-20681

Produtos afetados

Mate-Screensaver