Vulnerability Name: | CVE-2005-0078 (CCN-19084) | ||||||||||||||||
Assigned: | 2005-01-26 | ||||||||||||||||
Published: | 2005-01-26 | ||||||||||||||||
Updated: | 2017-10-11 | ||||||||||||||||
Summary: | The KDE screen saver in KDE before 3.0.5 does not properly check the return value from a certain function call, which allows attackers with physical access to cause a crash and access the desktop session. | ||||||||||||||||
CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||
CVSS v2 Severity: | 4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-0078 Source: CCN Type: RHSA-2005-009 kdelibs Source: DEBIAN Type: Patch, Vendor Advisory DSA-660 Source: DEBIAN Type: DSA-660 kdebase -- missing return value check Source: REDHAT Type: Patch, Vendor Advisory RHSA-2005:009 Source: CCN Type: BID-12373 KDE Screensaver Lock Bypass Vulnerability Source: XF Type: UNKNOWN kdebase-screensaver-security-bypass(19084) Source: XF Type: UNKNOWN kdebase-screensaver-security-bypass(19084) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:9260 | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Denotes that component is vulnerable | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |