gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver before 2.28.1, performs implicit paints on windows of type GDK_WINDOW_FOREIGN, which triggers an X error in certain circumstances and consequently allows physically proximate attackers to bypass screen locking and access an unattended workstation by pressing the Enter key many times.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2010-03-19 12:30
Updated : 2023-02-12 20:16
NVD link : CVE-2010-0732
Mitre link : CVE-2010-0732
JSON object : View
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Products Affected
gnome
- screensaver
gtk
- gtk\+