CVE Vulnerabilities

CVE-2013-1050

Published: Mar 08, 2013 | Modified: Mar 18, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
3.6 LOW
AV:L/AC:L/Au:N/C:P/I:P/A:N
RedHat/V3
Ubuntu
MEDIUM

The default configuration in gnome-screensaver 3.5.4 through 3.6.0 sets the AutostartCondition line to fallback mode in the .desktop file, which prevents the program from starting automatically after login and allows physically proximate attackers to bypass screen locking and access an unattended workstation.

Affected Software

Name Vendor Start Version End Version
Gnome_screensaver Gnome 3.5.4 (including) 3.5.4 (including)
Gnome_screensaver Gnome 3.5.5 (including) 3.5.5 (including)
Gnome_screensaver Gnome 3.6.0 (including) 3.6.0 (including)
Gnome-screensaver Ubuntu devel *
Gnome-screensaver Ubuntu hardy *
Gnome-screensaver Ubuntu quantal *

References