driver/subprocs.c in XScreenSaver before 5.34 does not properly perform an internal consistency check, which allows physically proximate attackers to bypass the lock screen by hot swapping monitors.
References
Information
Published : 2015-11-10 09:59
Updated : 2016-12-07 10:25
NVD link : CVE-2015-8025
Mitre link : CVE-2015-8025
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
canonical
- ubuntu_linux
xscreensaver_project
- xscreensaver