First published: Thu Feb 13 2014(Updated: )
Clemens Fries reported that, when using Cinnamon, it was possible to bypass the screensaver lock: <a href="http://seclists.org/oss-sec/2014/q1/327">http://seclists.org/oss-sec/2014/q1/327</a> An attacker with physical access to the machine could use this flaw to take over the locked desktop session. A patch is currently not yet available.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Mint | =17.0 | |
GTK | <=3.10.9 | |
Ubuntu | =14.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-1949 has been classified as a high severity vulnerability due to its potential to allow unauthorized access to a locked desktop session.
To fix CVE-2014-1949, users should upgrade to patched versions of their operating systems or desktop environments that address this vulnerability.
CVE-2014-1949 primarily affects users of Linux Mint 17.0 and Ubuntu 14.04 who utilize the Cinnamon desktop environment.
CVE-2014-1949 requires physical access to the machine, making it not directly exploitable remotely.
CVE-2014-1949 is a physical access vulnerability that allows attackers to bypass the screensaver lock on affected systems.