Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Felix Lemke

#39416of 53,639
6.9Total CVSS
Vulnerabilities · 1
PT-2010-2646
6.9
2010-03-03
Kde · Xscreensaver · CVE-2010-0923
**Name of the Vulnerable Software and Affected Versions** KDE SC version 4.4.0 **Description** A race condition exists in the KRunner lock module, specifically in the workspace/krunner/lock/lockdlg.cc file, allowing physically proximate attackers to bypass KScreenSaver screen locking. This can be achieved by pressing the Enter key at a certain time, related to the handling of multiple forked processes. **Recommendations** For KDE SC version 4.4.0, consider disabling the KScreenSaver screen locking feature until a patch is available to prevent exploitation of this issue. Restrict access to workstations to minimize the risk of unauthorized access.