6.2

CVE-2007-3920

GNOME screensaver 2.20 in Ubuntu 7.10, when used with Compiz, does not properly reserve input focus, which allows attackers with physical access to take control of the session after entering an Alt-Tab sequence, a related issue to CVE-2007-3069.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Compiz ≫ Compiz
   Ubuntu ≫ Ubuntu Linux Version 7.10 Edition amd64
   Ubuntu ≫ Ubuntu Linux Version 7.10 Edition i386
   Ubuntu ≫ Ubuntu Linux Version 7.10 Edition powerpc
   Ubuntu ≫ Ubuntu Linux Version 7.10 Edition sparc
Gnome ≫ Screensaver Version 2.20
   Ubuntu ≫ Ubuntu Linux Version 7.10 Edition amd64
   Ubuntu ≫ Ubuntu Linux Version 7.10 Edition i386
   Ubuntu ≫ Ubuntu Linux Version 7.10 Edition powerpc
   Ubuntu ≫ Ubuntu Linux Version 7.10 Edition sparc
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.36% 0.273
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.2 1.9 10
AV:L/AC:H/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00002.html
http://secunia.com/advisories/27381
Patch
Vendor Advisory
http://secunia.com/advisories/28627
http://secunia.com/advisories/30329
http://secunia.com/advisories/30715
http://www.redhat.com/support/errata/RHSA-2008-0485.html
http://www.securityfocus.com/bid/26188
Patch
http://www.ubuntu.com/usn/usn-537-1
Patch
http://www.ubuntu.com/usn/usn-537-2
https://bugzilla.redhat.com/show_bug.cgi?id=357071
https://bugzilla.redhat.com/show_bug.cgi?id=363061
https://exchange.xforce.ibmcloud.com/vulnerabilities/37410
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10192
https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00811.html
https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00841.html