Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 399351 - Security: xorg-server 1.11 allows bypass of screensaver (CVE-2012-0064)
Summary: Security: xorg-server 1.11 allows bypass of screensaver (CVE-2012-0064)
Status: RESOLVED DUPLICATE of bug 399347
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: [OLD] Core system (show other bugs)
Hardware: All Linux
: Normal major (vote)
Assignee: Gentoo Linux bug wranglers
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2012-01-19 07:59 UTC by Andrew Waters
Modified: 2012-01-19 08:54 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Andrew Waters 2012-01-19 07:59:41 UTC
xorg-server enables exiting of screen savers without providing a password.

Reproducible: Always

Steps to Reproduce:
1.Lock screen (e.g. xscreensaver)
2.Press ALT+CTRL+numeric keypad *
3.
Actual Results:  
xscreensaver is killed

Expected Results:  
xscreensaver is not killed
Comment 1 Andrew Waters 2012-01-19 08:01:11 UTC
See http://seclists.org/oss-sec/2012/q1/197
Comment 2 Alex Legler (RETIRED) archtester gentoo-dev Security 2012-01-19 08:54:20 UTC

*** This bug has been marked as a duplicate of bug 399347 ***