CVE-2009-4641
https://notcve.org/view.php?id=CVE-2009-4641
gnome-screensaver 2.28.0 does not resume adherence to its activation settings after an inhibiting application becomes unavailable on the session bus, which allows physically proximate attackers to access an unattended workstation on which screen locking had been intended. gnome-screensaver v2.28.0 no reanuda la adherencia a sus opciones de activación después de impedir que una aplicación llegue a no estar disponible sobre el bus de sesión, lo que permite a atacantes físicamente próximos , acceder un ordenador sin nadie sobre el que se ha bloqueado la pantalla de manera intencionada. • http://www.mandriva.com/security/advisories?name=MDVSA-2010:040 http://www.ubuntu.com/usn/USN-866-1 https://bugzilla.gnome.org/show_bug.cgi?id=600488 https://launchpad.net/bugs/411350 •
CVE-2009-4642
https://notcve.org/view.php?id=CVE-2009-4642
gnome-screensaver 2.26.1 relies on the gnome-session D-Bus interface to determine session idle time, even when an Xfce desktop such as Xubuntu or Mythbuntu is used, which allows physically proximate attackers to access an unattended workstation on which screen locking had been intended. gnome-screensaver v2.26.1 confía en el interfaz gnome-session D-Bus para determinar el tiempo idle de sesión, incluso cuando se usa un escritorio Xfce como Xubuntu o Mythbuntu, lo que permite a atacantes físicamente próximos , acceder un ordenador sin nadie sobre el que se ha bloqueado la pantalla de manera intencionada. • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=536381 http://bugzilla.xfce.org/show_bug.cgi?id=5927 https://bugzilla.gnome.org/show_bug.cgi?id=592093 https://launchpad.net/bugs/411350 https://launchpad.net/bugs/493573 •
CVE-2010-0414
https://notcve.org/view.php?id=CVE-2010-0414
gnome-screensaver before 2.28.2 allows physically proximate attackers to bypass screen locking and access an unattended workstation by moving the mouse position to an external monitor and then disconnecting that monitor. gnome-screensaver v2.28.2 permite a atacantes físicamente próximos , acceder un ordenador sin nadie sobre el que se ha bloqueado la pantalla de manera intencionada, moviendo el ratón hacia una posición de un monitor externo y luego desconectando dicho monitor.. • http://ftp.gnome.org/pub/GNOME/sources/gnome-screensaver/2.28/gnome-screensaver-2.28.2.news http://git.gnome.org/browse/gnome-screensaver/commit/?id=a5f66339be6719c2b8fc478a1d5fc6545297d950 http://git.gnome.org/browse/gnome-screensaver/commit/?id=dcca89b7ab6e1220815af38da246434b2e13fd9f http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034904.html http://secunia.com/advisories/38468 http://secunia.com/advisories/38532 http://secunia.com/advisories/38534 http://www.mandriva.com/security/a •
CVE-2008-0887 – gnome-screensaver using NIS auth will unlock if NIS goes away
https://notcve.org/view.php?id=CVE-2008-0887
gnome-screensaver before 2.22.1, when a remote authentication server is enabled, crashes upon an unlock attempt during a network outage, which allows physically proximate attackers to gain access to the locked session, a related issue to CVE-2007-1859. El salvapantallas de gnome antes de 2.22.1, se cae durante un intento de desbloqueo, cuando está habilitado un servidor de autentificación remota debido a una parada de la red, lo que permite a atacantes físicamente próximos obtener acceso a la sesión bloqueada, un problema relacionado con CVE-2007-1859. • http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00001.html http://osvdb.org/35531 http://rhn.redhat.com/errata/RHSA-2008-0197.html http://secunia.com/advisories/29595 http://secunia.com/advisories/29606 http://secunia.com/advisories/29742 http://secunia.com/advisories/29759 http://secunia.com/advisories/30967 http://secunia.com/advisories/32691 http://security.gentoo.org/glsa/glsa-200804-12.xml http://securitytracker.com/id?1019749 http://www.mandriva.com •
CVE-2007-6389
https://notcve.org/view.php?id=CVE-2007-6389
The notify feature in GNOME screensaver (gnome-screensaver) 2.20.0 might allow local users to read the clipboard contents and X selection data for a locked session by using ctrl-V. La funcionalidad de notificación en el salvapantallas de GNOME (gnome-screensaver) 2.20.0 podría permitir a usuarios locales leer los contenidos del porta-papeles y datos seleccionados en X para una sesión bloqueada al utilizar ctrl-V. • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=455484 http://bugzilla.gnome.org/show_bug.cgi?id=482159 http://bugzilla.gnome.org/show_bug.cgi?id=503005 http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00006.html http://secunia.com/advisories/29595 http://secunia.com/advisories/29666 http://secunia.com/advisories/31687 http://secunia.com/advisories/32691 http://www.mandriva.com/security/advisories?name=MDVSA-2008:135 http://www.securityfocus.com/bid/30096 http& •