CVE-2007-3920
EPSS 0.05%gnome-screensaver - authentication bypass
Published: 10/29/2007Modified: 4/28/2026
Also known as:DEBIAN-CVE-2007-3920
Description
GNOME screensaver 2.20 in Ubuntu 7.10, when used with Compiz, does not properly reserve input focus, which allows attackers with physical access to take control of the session after entering an Alt-Tab sequence, a related issue to CVE-2007-3069.
Affected packages (3)
- Debian/gnome-screensaverfrom 0, < 2.20.0-1.1
- Debian/gnome-screensaverfrom 0, < 2.18.2-1+lenny1
- Debian/xorg-serverfrom 0, < 2:1.4.1~git20080118-1