CVE-2018-20681

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
09/01/2019
Last modified:
30/01/2019

Description

mate-screensaver before 1.20.2 in MATE Desktop Environment allows physically proximate attackers to view screen content and possibly control applications. By unplugging and re-plugging or power-cycling external output devices (such as additionally attached graphical outputs via HDMI, VGA, DVI, etc.) the content of a screensaver-locked session can be revealed. In some scenarios, the attacker can execute applications, such as by clicking with a mouse.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mate-desktop:mate-screensaver:*:*:*:*:*:*:*:* 1.20.2 (excluding)