CVE Database
/

CVE-2021-20315

Back to search

CVE-2021-20315

Published: Feb 18, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

A locking protection bypass flaw was found in some versions of gnome-shell as shipped within CentOS Stream 8, when the "Application menu" or "Window list" GNOME extensions are enabled. This flaw allows a physical attacker who has access to a locked system to kill existing applications and start new ones as the locked user, even if the session is still locked.

VendorProductVersions

n/a

gnome-shell

affected
gnome-shell 3.32.2-40.el8

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now