PT-2010-2479 · Gnome+1 · Gnome-Screensaver+1

Chris Coulson

+1

·

Published

2010-03-19

·

Updated

2023-08-03

·

CVE-2010-0732

CVSS v2.0

6.2

Medium

VectorAV:L/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions GTK+ versions prior to 2.18.5 gnome-screensaver versions prior to 2.28.1
Description The issue allows physically proximate attackers to bypass screen locking and access an unattended workstation by pressing the Enter key many times, due to implicit paints on windows of type GDK WINDOW FOREIGN, which triggers an X error in certain circumstances.
Recommendations For GTK+ versions prior to 2.18.5, update to version 2.18.5 or later. For gnome-screensaver versions prior to 2.28.1, update to version 2.28.1 or later.

Fix

Race Condition

Weakness Enumeration

Related Identifiers

CVE-2010-0732

Affected Products

Gtk+
Gnome-Screensaver