CVE List

Id CVE No. Status Description Phase Votes Comments Actions
25216  CVE-2007-1859  Candidate  XScreenSaver 4.10, when using a remote directory service for credentials, does not properly handle the results from the getpwuid function in drivers/lock.c when there is no network connectivity, which causes XScreenSaver to crash and unlock the screen and allows local users to bypass authentication.  Assigned (20070404)  None (candidate not yet proposed)    View
7709  CVE-2003-0885  Candidate  Xscreensaver 4.14 contains certain debugging code that should have been omitted, which causes Xscreensaver to create temporary files insecurely in the (1) apple2, (2) xanalogtv, and (3) pong screensavers, and allows local users to overwrite arbitrary files via a symlink attack.  Assigned (20031024)  None (candidate not yet proposed)    View
28942  CVE-2007-5585  Candidate  xscreensaver 5.03 and earlier, when running without xscreensaver-gl-extras (GL extras) installed, crashes when /usr/bin/xscreensaver-gl-helper does not exist and a user attempts to unlock the screen, which allows attackers with physical access to gain access to the locked session.  Assigned (20071019)  None (candidate not yet proposed)    View
8118  CVE-2003-1294  Candidate  Xscreensaver before 4.15 creates temporary files insecurely in (1) driver/passwd-kerberos.c, (2) driver/xscreensaver-getimage-video, (3) driver/xscreensaver.kss.in, and the (4) vidwhacker and (5) webcollage screensavers, which allows local users to overwrite arbitrary files via a symlink attack.  Assigned (20060228)  None (candidate not yet proposed)    View
38711  CVE-2009-1276  Candidate  XScreenSaver in Sun Solaris 10 and OpenSolaris before snv_109, and Solaris 8 and 9 with GNOME 2.0 or 2.0.2, allows physically proximate attackers to obtain sensitive information by reading popup windows, which are displayed even when the screen is locked, as demonstrated by Thunderbird new-mail notifications.  Assigned (20090409)  None (candidate not yet proposed)    View

Page 20882 of 20943, showing 5 records out of 104715 total, starting on record 104406, ending on 104410

Actions