Описание
Security update for xscreensaver
Xscreensaver was updated to fix one security issue.
The following vulnerability was fixed:
- CVE-2015-8025: xscreensaver could be bypassed by disconnecting HDMI cable (bsc#952062).
Список пакетов
openSUSE Leap 42.1
xscreensaver-5.33-4.1
xscreensaver-data-5.33-4.1
xscreensaver-data-extra-5.33-4.1
Ссылки
- E-Mail link for openSUSE-SU-2015:2032-1
- SUSE Security Ratings
Описание
driver/subprocs.c in XScreenSaver before 5.34 does not properly perform an internal consistency check, which allows physically proximate attackers to bypass the lock screen by hot swapping monitors.
Затронутые продукты
openSUSE Leap 42.1:xscreensaver-5.33-4.1
openSUSE Leap 42.1:xscreensaver-data-5.33-4.1
openSUSE Leap 42.1:xscreensaver-data-extra-5.33-4.1
Ссылки
- CVE-2015-8025
- SUSE Bug 952062