LWN.net Logo

xlockmore: denial of service

Package(s):xlockmore CVE #(s):CVE-2012-4524
Created:November 6, 2012 Updated:November 9, 2012
Description: From the Red Hat bugzilla:

A denial of service flaw was found in the way xlockmore, X screen lock and screen saver, performed passing arguments to underlying localtime() call, when the 'dlock' mode was used. An attacker could use this flaw to potentially obtain unauthorized access to screen / graphical session, previously locked by another user / victim.

Alerts:
Fedora FEDORA-2012-16485 2012-11-06
Fedora FEDORA-2012-16490 2012-11-06
Mageia MGASA-2012-0328 2012-11-09

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds