PT-2010-1451 · Gnome · Gnome-Screensaver

Jamie Strandboge

+1

·

Published

2010-02-11

·

Updated

2010-07-07

·

CVE-2009-4641

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions gnome-screensaver version 2.28.0
Description The issue allows physically proximate attackers to access an unattended workstation where screen locking was intended, due to gnome-screensaver not resuming its activation settings after an inhibiting application becomes unavailable on the session bus.
Recommendations For gnome-screensaver version 2.28.0, consider disabling the screensaver functionality until a patch is available, and ensure that workstations are properly secured when unattended to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-4641

Affected Products

Gnome-Screensaver