Unity prior to 7.2.3 and 7.3.x prior to 7.3.1, as used in Ubuntu, does not properly take focus of the keyboard when switching to the lock screen, which allows physically proximate malicious users to bypass the lock screen by (1) leveraging a machine that had text selected when locking or (2) resuming from a suspension.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ayatana_project unity 7.3.0 |
||
ayatana_project unity |
||
ayatana_project unity 7.2.1 |
||
ayatana_project unity 7.2.0 |