xscreensaver 5.03 and earlier, when running without xscreensaver-gl-extras (GL extras) installed, crashes when /usr/bin/xscreensaver-gl-helper does not exist and a user attempts to unlock the screen, which allows attackers with physical access to gain access to the locked session.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=336331 | |
http://secunia.com/advisories/27392 | third party advisory |
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00336.html | vendor advisory |
http://www.securityfocus.com/bid/26204 | vdb entry |