PT-2010-1800 · Gnome · Gnome-Power-Manager

Published

2010-09-07

·

Updated

2010-09-08

·

CVE-2009-4997

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions gnome-power-manager version 2.27.92
Description The issue is related to the improper implementation of the lock on suspend and lock on hibernate settings in gnome-power-manager, which might allow physically proximate attackers to access an unattended laptop via a resume action. This problem arose due to a regression following a fix applied a few years earlier.
Recommendations For gnome-power-manager version 2.27.92, consider disabling the suspend and hibernate functions until a proper fix is applied to ensure the lock on suspend and lock on hibernate settings are correctly implemented.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-4997

Affected Products

Gnome-Power-Manager