gnome-screensaver: loses its unlock dialog and keyboard grab sometimes when plugging and unplugging monitor repeatedly
Published Feb 24, 2010
4.0
MEDIUMCVSS 2.0
EPSS 0.36%
Description
gnome-screensaver 2.28.x before 2.28.3 does not properly synchronize the state of screen locking and the unlock dialog in situations involving a change to the number of monitors, which allows physically proximate attackers to bypass screen locking and access an unattended workstation by connecting and disconnecting monitors multiple times, a related issue to CVE-2010-0414.
Affected products
No data.
- 2.28.0
- 2.28.1
- 2.28.2
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:L/AC:H/Au:N/C:N/I:C/A:N
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (11 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 0.36% (0.00357) | 27.04th | v5 (v2026.06.15) |
| Jun 15, 2026 | 0.36% (0.00357) | 27.32th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.08% (0.00076) | 20.41th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.06% (0.00062) | 28.23th | v3 (v2023.03.01) |
| Jun 11, 2024 | 0.06% (0.00062) | 26.21th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.06% (0.00062) | 24.20th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.28% (0.01282) | 68.34th | v2 (v2022.01.01) |
| Feb 13, 2023 | 1.28% (0.01282) | 67.79th | v2 (v2022.01.01) |
| Feb 3, 2023 | 1.55% (0.01547) | 74.40th | v2 (v2022.01.01) |
| Apr 1, 2022 | 1.28% (0.01282) | 65.91th | v2 (v2022.01.01) |
| Feb 4, 2022 | 1.28% (0.01282) | 41.72th | v2 (v2022.01.01) |
No CWE recorded.
References (15)
- http://ftp.gnome.org/pub/GNOME/sources/gnome-screensaver/2.28/gnome-screensaver-2.28.3.news x_refsource_CONFIRM
- http://git.gnome.org/browse/gnome-screensaver/commit/?id=271ae93d7b140b8ba40d77f9e4ce894e5fd1b554 x_refsource_CONFIRM
- http://git.gnome.org/browse/gnome-screensaver/commit/?id=d4dcbd65a2df3c093c4e3a74bbbc75383eb9eadb x_refsource_CONFIRM
- http://git.gnome.org/browse/gnome-screensaver/commit/?id=f93a22c175090cf02e80bc3ee676b53f1251f685 x_refsource_CONFIRM
- http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035115.html vendor-advisoryx_refsource_FEDORA
- http://marc.info/?l=oss-security&m=126601292400764&w=2 mailing-listx_refsource_MLIST
- http://secunia.com/advisories/38565 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/38583 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.securityfocus.com/bid/38248 vdb-entryx_refsource_BID
- https://access.redhat.com/security/cve/CVE-2010-0422 Vendor Advisory
- https://bugzilla.gnome.org/show_bug.cgi?id=609789 x_refsource_CONFIRM
- https://bugzilla.redhat.com/show_bug.cgi?id=564464 x_refsource_CONFIRMIssue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56364 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2010-0422
- https://www.cve.org/CVERecord?id=CVE-2010-0422
Change history (0)
No recorded changes yet.