Gnome
Gnome Screensaver: vulnerabilities and CVEs
Gnome Screensaver has 11 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs11
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-3452 | Low (3.3) | 0.34% | — | Aug 7, 2012 | gnome-screensaver 3.4.x before 3.4.4 and 3.5.x before 3.5.4, when multiple screens are used, only locks the screen with the active focus, which allows physically proximate attackers to bypass screen locking and access… |
| CVE-2010-0732 | Medium (6.2) | 0.30% | — | Mar 19, 2010 | gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver before 2.28.1, performs implicit paints on windows of type GDK_WINDOW_FOREIGN, which triggers an X error in certain circumstances and consequently… |
| CVE-2010-0422 | Medium (4) | 0.36% | — | Feb 24, 2010 | gnome-screensaver 2.28.x before 2.28.3 does not properly synchronize the state of screen locking and the unlock dialog in situations involving a change to the number of monitors, which allows physically proximate… |
| CVE-2010-0285 | Medium (5.6) | 0.30% | — | Feb 24, 2010 | gnome-screensaver 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, when the X configuration enables the extend screen option, allows physically proximate attackers to bypass screen locking, access an unattended workstation,… |
| CVE-2009-4642 | High (7.2) | 0.34% | — | Feb 11, 2010 | gnome-screensaver 2.26.1 relies on the gnome-session D-Bus interface to determine session idle time, even when an Xfce desktop such as Xubuntu or Mythbuntu is used, which allows physically proximate attackers to access… |
| CVE-2009-4641 | High (7.2) | 0.37% | — | Feb 11, 2010 | gnome-screensaver 2.28.0 does not resume adherence to its activation settings after an inhibiting application becomes unavailable on the session bus, which allows physically proximate attackers to access an unattended… |
| CVE-2010-0414 | High (7.2) | 0.42% | — | Feb 11, 2010 | gnome-screensaver before 2.28.2 allows physically proximate attackers to bypass screen locking and access an unattended workstation by moving the mouse position to an external monitor and then disconnecting that monitor. |
| CVE-2008-0887 | Medium (4.7) | 1.3% | — | Apr 6, 2008 | gnome-screensaver before 2.22.1, when a remote authentication server is enabled, crashes upon an unlock attempt during a network outage, which allows physically proximate attackers to gain access to the locked session,… |
| CVE-2007-6389 | Low (2.1) | 0.37% | — | Dec 17, 2007 | The notify feature in GNOME screensaver (gnome-screensaver) 2.20.0 might allow local users to read the clipboard contents and X selection data for a locked session by using ctrl-V. |
| CVE-2007-3920 | Medium (6.2) | 0.36% | — | Oct 29, 2007 | GNOME screensaver 2.20 in Ubuntu 7.10, when used with Compiz, does not properly reserve input focus, which allows attackers with physical access to take control of the session after entering an Alt-Tab sequence, a… |
| CVE-2006-1335 | Low (3.7) | 0.34% | — | Mar 21, 2006 | gnome screensaver before 2.14, when running on an X server with AllowDeactivateGrabs and AllowClosedownGrabs enabled, allows attackers with physical access to cause the screensaver to crash and access the session via… |