CVE-2010-0732

gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver before 2.28.1, performs implicit paints on windows of type GDK_WINDOW_FOREIGN, which triggers an X error in certain circumstances and consequently allows physically proximate attackers to bypass screen locking and access an unattended workstation by pressing the Enter key many times.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:gtk:gtk\+:*:*:*:*:*:*:*:*
cpe:2.3:a:gnome:screensaver:*:*:*:*:*:*:*:*

Information

Published : 2010-03-19 19:30

Updated : 2010-06-05 05:32


NVD link : CVE-2010-0732

Mitre link : CVE-2010-0732


JSON object : View

Products Affected

gnome

  • screensaver

gtk

  • gtk\+
CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')