PT-2022-9181 · Gnome+1 · Gnome Shell+1

Marian Rehak

·

Published

2019-05-30

·

Updated

2022-12-03

·

CVE-2021-20315

CVSS v3.1

6.1

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions gnome-shell versions (affected versions not specified)
Description A locking protection bypass flaw was found in gnome-shell, allowing a physical attacker with access to a locked system to kill existing applications and start new ones as the locked user, even if the session is still locked. This issue occurs when the "Application menu" or "Window list" GNOME extensions are enabled.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Locking

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1931
ALT-PU-2019-2019
CVE-2021-20315

Affected Products

Alt Linux
Gnome Shell