PT-2010-1800 · Gnome · Gnome-Power-Manager
Published
2010-09-07
·
Updated
2010-09-08
·
CVE-2009-4997
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
gnome-power-manager version 2.27.92
Description
The issue is related to the improper implementation of the lock on suspend and lock on hibernate settings in gnome-power-manager, which might allow physically proximate attackers to access an unattended laptop via a resume action. This problem arose due to a regression following a fix applied a few years earlier.
Recommendations
For gnome-power-manager version 2.27.92, consider disabling the suspend and hibernate functions until a proper fix is applied to ensure the lock on suspend and lock on hibernate settings are correctly implemented.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gnome-Power-Manager