CVE-2010-0285 describes a bypass vulnerability in gnome-screensaver versions 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, specifically when the X configuration has the "extend screen" option enabled. This flaw allows a physically proximate attacker to bypass the screen lock and view half of the GNOME desktop by attaching an external monitor to an unattended workstation. The vulnerability has a CVSS score of 5.6, indicating a medium severity, with a low attack complexity requiring physical access and resulting in complete confidentiality and integrity compromise. There is no evidence of active exploitation, no publicly available exploit code in Metasploit or ExploitDB, and minimal community discussion or media coverage, suggesting it is not a widely targeted or discussed vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.14.3CPE matchmatch criteria | cpe:2.3:a:gnome:screensaver:2.14.3:*:*:*:*:*:*:* | ||
2.22.2CPE matchmatch criteria | cpe:2.3:a:gnome:screensaver:2.22.2:*:*:*:*:*:*:* | ||
2.27CPE matchmatch criteria | cpe:2.3:a:gnome:screensaver:2.27:*:*:*:*:*:*:* | ||
2.28.0CPE matchmatch criteria | cpe:2.3:a:gnome:screensaver:2.28.0:*:*:*:*:*:*:* | ||
2.28.3CPE matchmatch criteria | cpe:2.3:a:gnome:screensaver:2.28.3:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:H/Au:N/C:C/I:C/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.