Summary
Ubuntu Update for Linux kernel vulnerabilities USN-669-1
Solution
Please Install the Updated Packages.
Insight
It was discovered that the notify feature in gnome-screensaver could let a local attacker read the clipboard contents of a locked session by using Ctrl-V. (CVE-2007-6389)
Alan Matsuoka discovered that gnome-screensaver did not properly handle network outages when using a remote authentication service. During a network interruption, or by disconnecting the network cable, a local attacker could gain access to locked sessions. (CVE-2008-0887)
Affected
gnome-screensaver vulnerabilities on Ubuntu 6.06 LTS , Ubuntu 7.10
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2007-6389, CVE-2008-0887 -
CVSS Base Score: 4.7
AV:L/AC:M/Au:N/C:N/I:N/A:C
Related Vulnerabilities