LWN.net Logo

xscreensaver: password check bypass

Package(s):xscreensaver CVE #(s):CVE-2007-1859
Created:May 2, 2007 Updated:June 13, 2007
Description: On a system which uses a remote directory service for passwords, a local attacker can crash xscreensaver by disrupting network connectivity, thus bypassing the password check and gaining access to the system.
Alerts:
Ubuntu USN-474-1 2007-06-12
Gentoo 200705-14 2007-05-13
SuSE SUSE-SR:2007:009 2007-05-04
rPath rPSA-2007-0088-1 2007-05-03
Mandriva MDKSA-2007:097 2007-05-02
Red Hat RHSA-2007:0322-01 2007-05-02

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds