Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hrwv-325w-f6ch

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

XScreenSaver 5.45 can be bypassed if the machine has more than ten disconnectable video outputs. A buffer overflow in update_screen_layout() allows an attacker to bypass the standard screen lock authentication mechanism by crashing XScreenSaver. The attacker must physically disconnect many video outputs.

XScreenSaver 5.45 can be bypassed if the machine has more than ten disconnectable video outputs. A buffer overflow in update_screen_layout() allows an attacker to bypass the standard screen lock authentication mechanism by crashing XScreenSaver. The attacker must physically disconnect many video outputs.

EPSS

Процентиль: 21%
0.00066
Низкий

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 4.6
ubuntu
больше 4 лет назад

XScreenSaver 5.45 can be bypassed if the machine has more than ten disconnectable video outputs. A buffer overflow in update_screen_layout() allows an attacker to bypass the standard screen lock authentication mechanism by crashing XScreenSaver. The attacker must physically disconnect many video outputs.

CVSS3: 4.6
nvd
больше 4 лет назад

XScreenSaver 5.45 can be bypassed if the machine has more than ten disconnectable video outputs. A buffer overflow in update_screen_layout() allows an attacker to bypass the standard screen lock authentication mechanism by crashing XScreenSaver. The attacker must physically disconnect many video outputs.

CVSS3: 4.6
debian
больше 4 лет назад

XScreenSaver 5.45 can be bypassed if the machine has more than ten dis ...

suse-cvrf
больше 3 лет назад

Security update for xscreensaver

suse-cvrf
больше 3 лет назад

Security update for xscreensaver

EPSS

Процентиль: 21%
0.00066
Низкий

Дефекты

CWE-120