xscreensaver before 5.14 crashes during activation and leaves the screen …
xscreensaver before 5.14 crashes during activation and leaves the screen unlocked when in Blank Only Mode and when DPMS is disabled, which allows local attackers to access resources without authentication.
References
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=627382 x_refsource_MISC
- [oss-security] 20110606 Re: CVE Request -- xscreensaver -- exits when activated x_refsource_MLIST mailing-list
- https://www.jwz.org/xscreensaver/changelog.html x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2011-2187 x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2187 x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2011-2187 x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2011-2187 x_transferred x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2187 x_transferred x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2011-2187 x_transferred x_refsource_MISC
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=627382 x_transferred x_refsource_MISC
- [oss-security] 20110606 Re: CVE Request -- xscreensaver -- exits when activated x_refsource_MLIST mailing-list x_transferred
- https://www.jwz.org/xscreensaver/changelog.html x_transferred x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2011-2187 x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2187 x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2011-2187 x_refsource_MISC
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=627382 x_refsource_MISC
- [oss-security] 20110606 Re: CVE Request -- xscreensaver -- exits when activated x_refsource_MLIST mailing-list
- https://www.jwz.org/xscreensaver/changelog.html x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2011-2187 x_transferred x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2187 x_transferred x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2011-2187 x_transferred x_refsource_MISC
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=627382 x_transferred x_refsource_MISC
- [oss-security] 20110606 Re: CVE Request -- xscreensaver -- exits when activated x_refsource_MLIST mailing-list x_transferred
- https://www.jwz.org/xscreensaver/changelog.html x_transferred x_refsource_MISC
Affected products
- ==before 5.14
Package maintainers
-
@7c6f434c Michael Raskin <7c6f434c@mail.ru>