Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-3820

Опубликовано: 06 фев. 2019
Источник: debian
EPSS Низкий

Описание

It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gnome-shellfixed3.30.2-3package
gnome-shellno-dsastretchpackage
gnome-shellnot-affectedjessiepackage

Примечания

  • Introduced by: https://bugzilla.gnome.org/show_bug.cgi?id=745039

  • Introduced by: https://gitlab.gnome.org/GNOME/gnome-shell/commit/c79d24b60e773262091023feb6ee1b3deef1c471

  • Upstream issue: https://gitlab.gnome.org/GNOME/gnome-shell/issues/851

EPSS

Процентиль: 16%
0.0005
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 6 лет назад

It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions.

CVSS3: 4.8
redhat
больше 6 лет назад

It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions.

CVSS3: 4.3
nvd
больше 6 лет назад

It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions.

suse-cvrf
около 6 лет назад

Security update for gnome-shell

suse-cvrf
около 6 лет назад

Security update for gnome-shell

EPSS

Процентиль: 16%
0.0005
Низкий