A vulnerability was found in GNOME Shell. GNOME Shell's lock screen allows an unauthenticated local user to view windows of the locked desktop session by using keyboard shortcuts to unlock the restricted functionality of the screenshot tool.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://access.redhat.com/security/cve/CVE-2023-43090 | third party advisory vdb entry |
https://bugzilla.redhat.com/show_bug.cgi?id=2239087 | third party advisory issue tracking |
https://gitlab.gnome.org/GNOME/gnome-shell/-/issues/6990 | patch exploit vendor advisory issue tracking |
https://gitlab.gnome.org/GNOME/gnome-shell/-/merge_requests/2944 | patch vendor advisory |