|
|
| |
|
| |
lxsession: arbitrary code execution
| Package(s): | lxsession |
CVE #(s): | CVE-2010-2532
|
| Created: | July 23, 2010 |
Updated: | August 2, 2010 |
| Description: |
From the openSUSE advisory:
lxsession-logout did not properly lock the screen before
suspending, hibernating and switching between users which
could allow attackers with physical access to take control
of the system to obtain sensitive information and / or
execute arbitrary code in the context of the user who is
currently logged in. |
| Alerts: |
|
( Log in to post comments)
|
|
|