4.6
CVSSv2

CVE-2016-2312

Published: 23/12/2016 Updated: 30/10/2018
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Turning all screens off in Plasma-workspace and kscreenlocker while the lock screen is shown can result in the screen being unlocked when turning a screen on again.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

kde kscreenlocker

kde plasma-workspace

fedoraproject fedora 22

opensuse leap 42.1

fedoraproject fedora 23

Vendor Advisories

Debian Bug report logs - #814355 plasma-workspace: CVE-2016-2312: KDE lockscreen bypass by switching display off and on Package: src:plasma-workspace; Maintainer for src:plasma-workspace is Debian/Kubuntu Qt/KDE Maintainers <debian-qt-kde@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: W ...