Back to search
CVE-2021-20315
Published: Feb 18, 2022
Modified: Aug 3, 2024
PUBLISHED
Description
A locking protection bypass flaw was found in some versions of gnome-shell as shipped within CentOS Stream 8, when the "Application menu" or "Window list" GNOME extensions are enabled. This flaw allows a physical attacker who has access to a locked system to kill existing applications and start new ones as the locked user, even if the session is still locked.
| Vendor | Product | Versions |
|---|---|---|
n/a | gnome-shell | affected gnome-shell 3.32.2-40.el8 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now