CVE-2014-5195

Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not properly take focus of the keyboard when switching to the lock screen, which allows physically proximate attackers to bypass the lock screen by (1) leveraging a machine that had text selected when locking or (2) resuming from a suspension.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ayatana_project:unity:7.3.0:*:*:*:*:*:*:*
cpe:2.3:a:ayatana_project:unity:*:*:*:*:*:*:*:*
cpe:2.3:a:ayatana_project:unity:7.2.1:*:*:*:*:*:*:*
cpe:2.3:a:ayatana_project:unity:7.2.0:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*

Information

Published : 2014-08-07 04:13

Updated : 2017-09-07 18:29


NVD link : CVE-2014-5195

Mitre link : CVE-2014-5195


JSON object : View

CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Advertisement

dedicated server usa

Products Affected

canonical

  • ubuntu_linux

ayatana_project

  • unity