PT-2010-1451 · Gnome · Gnome-Screensaver
Jamie Strandboge
+1
·
Published
2010-02-11
·
Updated
2010-07-07
·
CVE-2009-4641
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
gnome-screensaver version 2.28.0
Description
The issue allows physically proximate attackers to access an unattended workstation where screen locking was intended, due to gnome-screensaver not resuming its activation settings after an inhibiting application becomes unavailable on the session bus.
Recommendations
For gnome-screensaver version 2.28.0, consider disabling the screensaver functionality until a patch is available, and ensure that workstations are properly secured when unattended to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Gnome-Screensaver