CVE-2010-0285
Status: ModifiedMedium (5.6)—
gnome-screensaver 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, when the X configuration enables the extend screen option, allows physically proximate attackers to bypass screen locking, access an unattended workstation, and view half of the GNOME desktop by attaching an external monitor.
CVSS
- Version: 2.0
- Vector: AV:L/AC:H/Au:N/C:C/I:C/A:N
- Base score: 5.6
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 0.30%
- Percentile among all scored CVEs: 21
- Score date: 10/3/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
CWEs
- NVD-CWE-Other
References
- http://git.gnome.org/browse/gnome-screensaver/commit/?id=2f597ea9f1f363277fd4dfc109fa41bbc6225aca
- http://security-tracker.debian.org/tracker/CVE-2010-0285
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:093
- http://www.securityfocus.com/bid/38254
- https://bugzilla.gnome.org/show_bug.cgi?id=593616
- https://bugzilla.redhat.com/show_bug.cgi?id=557525
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56366
- http://git.gnome.org/browse/gnome-screensaver/commit/?id=2f597ea9f1f363277fd4dfc109fa41bbc6225aca
- http://security-tracker.debian.org/tracker/CVE-2010-0285
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:093
- http://www.securityfocus.com/bid/38254
- https://bugzilla.gnome.org/show_bug.cgi?id=593616
- https://bugzilla.redhat.com/show_bug.cgi?id=557525
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56366
Raw JSON (NVD)
Show
{
"id": "CVE-2010-0285",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 5.6,
"accessVector": "LOCAL",
"vectorString": "AV:L/AC:H/Au:N/C:C/I:C/A:N",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "HIGH",
"availabilityImpact": "NONE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 9.2,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 1.9,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "secalert@redhat.com",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2010-02-24T18:30:00.377",
"references": [
{
"url": "http://git.gnome.org/browse/gnome-screensaver/commit/?id=2f597ea9f1f363277fd4dfc109fa41bbc6225aca",
"source": "secalert@redhat.com"
},
{
"url": "http://security-tracker.debian.org/tracker/CVE-2010-0285",
"source": "secalert@redhat.com"
},
{
"url": "http://www.mandriva.com/security/advisories?name=MDVSA-2011:093",
"source": "secalert@redhat.com"
},
{
"url": "http://www.securityfocus.com/bid/38254",
"source": "secalert@redhat.com"
},
{
"url": "https://bugzilla.gnome.org/show_bug.cgi?id=593616",
"source": "secalert@redhat.com"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=557525",
"source": "secalert@redhat.com"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/56366",
"source": "secalert@redhat.com"
},
{
"url": "http://git.gnome.org/browse/gnome-screensaver/commit/?id=2f597ea9f1f363277fd4dfc109fa41bbc6225aca",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://security-tracker.debian.org/tracker/CVE-2010-0285",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.mandriva.com/security/advisories?name=MDVSA-2011:093",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/38254",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://bugzilla.gnome.org/show_bug.cgi?id=593616",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=557525",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/56366",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "gnome-screensaver 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, when the X configuration enables the extend screen option, allows physically proximate attackers to bypass screen locking, access an unattended workstation, and view half of the GNOME desktop by attaching an external monitor."
},
{
"lang": "es",
"value": "gnome-screensaver v2.14.3, v2.22.2, v2.27.x, v2.28.0, y v2.28.3, cuando la configuración de las X activa la extensión de monitor, permite a atacantes próximos físicamente, evitar el bloqueo de pantalla y visualizar la mitad del escritorio GNOME conectando un monitor externo."
}
],
"lastModified": "2026-06-16T23:15:51.420",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:gnome:screensaver:2.14.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D3CB0A81-36D5-4FBE-AF13-970676360116"
},
{
"criteria": "cpe:2.3:a:gnome:screensaver:2.22.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5A03A6A7-8FE2-49BF-B5CF-E91613ACA5DF"
},
{
"criteria": "cpe:2.3:a:gnome:screensaver:2.27:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2502D5A9-D004-4277-8D51-EB5B0C2C564B"
},
{
"criteria": "cpe:2.3:a:gnome:screensaver:2.28.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D8F6FD15-5B21-48C5-BB33-D57C23859120"
},
{
"criteria": "cpe:2.3:a:gnome:screensaver:2.28.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "387D7504-5045-40B6-B774-C1483B87AB51"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "secalert@redhat.com"
}