PT-2010-1228 · Gnome · Gnome-Power-Manager

Mark W. Tomlinson

+1

·

Published

2010-09-07

·

Updated

2010-09-08

·

CVE-2006-7240

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions gnome-power-manager version 2.14.0
Description The issue is related to the improper implementation of the lock on suspend and lock on hibernate settings, which are supposed to lock the screen when the suspend or hibernate button is pressed. This might allow physically proximate attackers to access an unattended laptop via a resume action.
Recommendations For gnome-power-manager version 2.14.0, consider disabling the suspend and hibernate functions or manually locking the screen before suspending or hibernating the laptop to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2006-7240

Affected Products

Gnome-Power-Manager