gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver before 2.28.1, performs implicit paints on windows of type GDK_WINDOW_FOREIGN, which triggers an X error in certain circumstances and consequently allows physically proximate attackers to bypass screen locking and access an unattended workstation by pressing the Enter key many times.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2010-03-19T19:00:00

Updated: 2024-08-07T00:59:38.691Z

Reserved: 2010-02-26T00:00:00

Link: CVE-2010-0732

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2010-03-19T19:30:00.483

Modified: 2023-08-03T17:17:14.900

Link: CVE-2010-0732

cve-icon Redhat

Severity : Important

Publid Date: 2009-10-14T00:00:00Z

Links: CVE-2010-0732 - Bugzilla