Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Christoph Wickert

#38712of 53,633
7.2Total CVSS
Vulnerabilities · 1
PT-2010-1799
7.2
2010-09-07
Xfce · Xfce4-Session · CVE-2009-4996
**Name of the Vulnerable Software and Affected Versions** Xfce4-session version 4.5.91 **Description** The issue concerns Xfce4-session not locking the screen when the suspend or hibernate button is pressed. This could potentially allow physically proximate attackers to access an unattended laptop via a resume action. It is noted that there is no general agreement on whether this behavior constitutes a vulnerability, as separate control over locking can be equally or more secure in certain threat environments. **Recommendations** For Xfce4-session version 4.5.91, consider configuring the system to lock the screen manually when suspending or hibernating to minimize potential risks.