Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2015:2032-1

Опубликовано: 11 нояб. 2015
Источник: suse-cvrf

Описание

Security update for xscreensaver

Xscreensaver was updated to fix one security issue.

The following vulnerability was fixed:

  • CVE-2015-8025: xscreensaver could be bypassed by disconnecting HDMI cable (bsc#952062).

Список пакетов

openSUSE Leap 42.1
xscreensaver-5.33-4.1
xscreensaver-data-5.33-4.1
xscreensaver-data-extra-5.33-4.1

Описание

driver/subprocs.c in XScreenSaver before 5.34 does not properly perform an internal consistency check, which allows physically proximate attackers to bypass the lock screen by hot swapping monitors.


Затронутые продукты
openSUSE Leap 42.1:xscreensaver-5.33-4.1
openSUSE Leap 42.1:xscreensaver-data-5.33-4.1
openSUSE Leap 42.1:xscreensaver-data-extra-5.33-4.1

Ссылки