7.2
CVSSv2

CVE-2010-0414

Published: 11/02/2010 Updated: 26/02/2010
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

gnome-screensaver prior to 2.28.2 allows physically proximate malicious users to bypass screen locking and access an unattended workstation by moving the mouse position to an external monitor and then disconnecting that monitor.

Vulnerable Product Search on Vulmon Subscribe to Product

gnome screensaver 2.20.0

gnome screensaver 2.20

gnome screensaver 2.28.0

gnome screensaver 2.26.1

gnome screensaver 2.13

gnome screensaver

Vendor Advisories

Debian Bug report logs - #569084 CVE-2010-0414 Package: gnome-screensaver; Maintainer for gnome-screensaver is Debian GNOME Maintainers <pkg-gnome-maintainers@listsaliothdebianorg>; Source for gnome-screensaver is src:gnome-screensaver (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Tu ...
It was discovered that gnome-screensaver did not correctly handle monitor hotplugging An attacker with physical access could cause gnome-screensaver to crash and gain access to the locked session ...