Description
XScreenSaver 4.10, when using a remote directory service for credentials, does not properly handle the results from the getpwuid function in drivers/lock.c when there is no network connectivity, which causes XScreenSaver to crash and unlock the screen and allows local users to bypass authentication.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2007-1853 | XScreenSaver 4.10, when using a remote directory service for credentials, does not properly handle the results from the getpwuid function in drivers/lock.c when there is no network connectivity, which causes XScreenSaver to crash and unlock the screen and allows local users to bypass authentication. |
Ubuntu USN |
USN-474-1 | xscreensaver vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T13:13:41.544Z
Reserved: 2007-04-04T00:00:00.000Z
Link: CVE-2007-1859
No data.
Status : Deferred
Published: 2007-05-02T20:19:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2007-1859
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN