7.2
CVSSv2

CVE-2014-1949

Published: 16/01/2015 Updated: 03/08/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

GTK+ 3.10.9 and previous versions, as used in cinnamon-screensaver, gnome-screensaver, and other applications, allows physically proximate malicious users to bypass the lock screen by pressing the menu button.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linuxmint linux mint 17.0

gnome gtk

canonical ubuntu 14.04

Vendor Advisories

Debian Bug report logs - #738828 CVE-2014-1949: cinnamon-screensaver can be bypassed by pressing Menu key Package: libgtk-3-0; Maintainer for libgtk-3-0 is Debian GNOME Maintainers <pkg-gnome-maintainers@listsaliothdebianorg>; Source for libgtk-3-0 is src:gtk+30 (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <j ...