Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-3820

Опубликовано: 05 фев. 2019
Источник: redhat
CVSS3: 4.8
EPSS Низкий

Описание

It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions.

A vulnerability was found where the gnome-shell lock screen, since version 3.15.91, does not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts and potentially other actions. This vulnerability was fixed in gnome-shell 3.31.5 and 3.30.3.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-285
https://bugzilla.redhat.com/show_bug.cgi?id=1669391gnome-shell: partial lock screen bypass

EPSS

Процентиль: 15%
0.0005
Низкий

4.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 6 лет назад

It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions.

CVSS3: 4.3
nvd
больше 6 лет назад

It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions.

CVSS3: 4.3
debian
больше 6 лет назад

It was discovered that the gnome-shell lock screen since version 3.15. ...

suse-cvrf
около 6 лет назад

Security update for gnome-shell

suse-cvrf
около 6 лет назад

Security update for gnome-shell

EPSS

Процентиль: 15%
0.0005
Низкий

4.8 Medium

CVSS3