CVE-2012-3452

gnome-screensaver 3.4.x-3.4.4 3.5.x-3.5.4 - Unauthenticated Screen Lock Bypass via Multi-Screen Focus Handling

Title source: llm
STIX 2.1

Description

gnome-screensaver 3.4.x before 3.4.4 and 3.5.x before 3.5.4, when multiple screens are used, only locks the screen with the active focus, which allows physically proximate attackers to bypass screen locking and access an unattended workstation.

References (3)

Core 3
Core References
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2012/08/03/3
Issue Tracking x_refsource_confirm
https://bugzilla.gnome.org/show_bug.cgi?id=679441
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2012/08/03/5

Scores

EPSS 0.0007
EPSS Percentile 20.7%

Details

CWE
CWE-264
Status published
Products (4)
gnome/screensaver 3.4.0
gnome/screensaver 3.4.2
gnome/screensaver 3.4.3
gnome/screensaver 3.5.3
Published Aug 07, 2012
Tracked Since Feb 18, 2026