Jump to content

Advisories MDVSA-2010:109: gtk+2.0


Recommended Posts

A vulnerability was discovered and fixed in gtk+2.0:

 

gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver

before 2.28.1, performs implicit paints on windows of type

GDK_WINDOW_FOREIGN, which triggers an X error in certain circumstances

and consequently allows physically proximate attackers to bypass

screen locking and access an unattended workstation by pressing the

Enter key many times (CVE-2010-0732).

 

Packages for 2008.0 and 2009.0 are provided as of the Extended

Maintenance Program. Please visit this link to learn more:

http://store.mandriva.com/product_info.php?cPath=149&products_id=490

 

This update fixes this issue.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...