The Ayatana Project maintains libraries that extend the Ubuntu desktop environment's integration and notification capabilities, with observed vulnerabilities concentrating in the Unity desktop shell integration. The durable signal centers on concurrency-related weaknesses, specifically race conditions arising from shared-resource access patterns in the notification and session-management subsystem. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ayatana Project over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-5195HIGH Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not properly take focus of the keyboard when switching to the lock screen, which allows physically proximate atta | Aug 7, 2014 | 7.2 | 24 | NO | NO |
CVE-2014-3204MEDIUM Unity before 7.2.1, as used in Ubuntu 14.04, does not properly handle keyboard shortcuts, which allows physically proximate attackers to bypass the lock screen and execute arbitrar | May 6, 2014 | 4.4 | 14 | NO | NO |
CVE-2014-3203MEDIUM Unity before 7.2.1, as used in Ubuntu 14.04, does not properly restrict access to the Dash when the lock screen is active, which allows physically proximate attackers to bypass the | May 6, 2014 | 4.4 | 14 | NO | NO |
CVE-2014-3202MEDIUM Unity before 7.2.1 does not properly handle entry activation, which allows physically proximate attackers to bypass the lock screen by holding the ENTER key, which triggers the pro | May 6, 2014 | 4.4 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ayatana Project.
Media articles that mention a CVE ID that affects a product developed by Ayatana Project — matched by CVE ID, not by vendor name.