« Back to list

CVE-2010-0285

Status: ModifiedMedium (5.6)—

gnome-screensaver 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, when the X configuration enables the extend screen option, allows physically proximate attackers to bypass screen locking, access an unattended workstation, and view half of the GNOME desktop by attaching an external monitor.

CVSS

Exploitation probability (EPSS)

EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).

Affected technologies (1)

CWEs

References

Raw JSON (NVD)

Show
{
  "id": "CVE-2010-0285",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5.6,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:H/Au:N/C:C/I:C/A:N",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "HIGH",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": false,
        "impactScore": 9.2,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 1.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "secalert@redhat.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2010-02-24T18:30:00.377",
  "references": [
    {
      "url": "http://git.gnome.org/browse/gnome-screensaver/commit/?id=2f597ea9f1f363277fd4dfc109fa41bbc6225aca",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://security-tracker.debian.org/tracker/CVE-2010-0285",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2011:093",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://www.securityfocus.com/bid/38254",
      "source": "secalert@redhat.com"
    },
    {
      "url": "https://bugzilla.gnome.org/show_bug.cgi?id=593616",
      "source": "secalert@redhat.com"
    },
    {
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=557525",
      "source": "secalert@redhat.com"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/56366",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://git.gnome.org/browse/gnome-screensaver/commit/?id=2f597ea9f1f363277fd4dfc109fa41bbc6225aca",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://security-tracker.debian.org/tracker/CVE-2010-0285",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2011:093",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/38254",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://bugzilla.gnome.org/show_bug.cgi?id=593616",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=557525",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/56366",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "gnome-screensaver 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, when the X configuration enables the extend screen option, allows physically proximate attackers to bypass screen locking, access an unattended workstation, and view half of the GNOME desktop by attaching an external monitor."
    },
    {
      "lang": "es",
      "value": "gnome-screensaver v2.14.3, v2.22.2, v2.27.x, v2.28.0, y v2.28.3, cuando la configuración de las X activa la extensión de monitor, permite a atacantes próximos físicamente, evitar el bloqueo de pantalla y visualizar la mitad del escritorio GNOME conectando un monitor externo."
    }
  ],
  "lastModified": "2026-06-16T23:15:51.420",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:gnome:screensaver:2.14.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D3CB0A81-36D5-4FBE-AF13-970676360116"
            },
            {
              "criteria": "cpe:2.3:a:gnome:screensaver:2.22.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5A03A6A7-8FE2-49BF-B5CF-E91613ACA5DF"
            },
            {
              "criteria": "cpe:2.3:a:gnome:screensaver:2.27:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2502D5A9-D004-4277-8D51-EB5B0C2C564B"
            },
            {
              "criteria": "cpe:2.3:a:gnome:screensaver:2.28.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D8F6FD15-5B21-48C5-BB33-D57C23859120"
            },
            {
              "criteria": "cpe:2.3:a:gnome:screensaver:2.28.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "387D7504-5045-40B6-B774-C1483B87AB51"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "secalert@redhat.com"
}