4
CVSSv2

CVE-2010-0422

Published: 24/02/2010 Updated: 17/08/2017
CVSS v2 Base Score: 4 | Impact Score: 6.9 | Exploitability Score: 1.9
VMScore: 356
Vector: AV:L/AC:H/Au:N/C:N/I:C/A:N

Vulnerability Summary

gnome-screensaver 2.28.x prior to 2.28.3 does not properly synchronize the state of screen locking and the unlock dialog in situations involving a change to the number of monitors, which allows physically proximate malicious users to bypass screen locking and access an unattended workstation by connecting and disconnecting monitors multiple times, a related issue to CVE-2010-0414.

Vulnerable Product Search on Vulmon Subscribe to Product

gnome screensaver 2.28.1

gnome screensaver 2.28.2

gnome screensaver 2.28.0

Vendor Advisories

It was discovered that gnome-screensaver did not correctly lock all screens when monitors get hotplugged An attacker with physical access could use this flaw to gain access to a locked session (CVE-2010-0285) ...