GNOME Shell 3.14.x before 3.14.1, when the Screen Lock feature is used, does not limit the aggregate memory consumption of all active PrtSc requests, which allows physically proximate attackers to execute arbitrary commands on an unattended workstation by making many PrtSc requests and leveraging a temporary lock outage, and the resulting temporary shell availability, caused by the Linux kernel OOM killer.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-12-25T21:00:00
Updated: 2024-08-06T12:47:32.779Z
Reserved: 2014-10-02T00:00:00
Link: CVE-2014-7300
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-12-25T21:59:02.937
Modified: 2024-11-21T02:16:42.970
Link: CVE-2014-7300
Redhat