CVE-2013-1050
Summary
| CVE | CVE-2013-1050 |
|---|---|
| State | PUBLISHED |
| Assigner | canonical |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-03-08 22:55:01 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | The default configuration in gnome-screensaver 3.5.4 through 3.6.0 sets the AutostartCondition line to fallback mode in the .desktop file, which prevents the program from starting automatically after login and allows physically proximate attackers to bypass screen locking and access an unattended workstation. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:L/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnome | Gnome Screensaver | 3.5.4 | All | All | All |
| Application | Gnome | Gnome Screensaver | 3.5.5 | All | All | All |
| Application | Gnome | Gnome Screensaver | 3.6.0 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| USN-1716-1: gnome-screensaver vulnerability | Ubuntu | af854a3a-2127-422b-91ae-364da2661108 | www.ubuntu.com | |
| Bug 683060 – Impossible to unlock screen if not using GDM | af854a3a-2127-422b-91ae-364da2661108 | bugzilla.gnome.org | |
| gnome-screensaver - GNOME Screensaver | af854a3a-2127-422b-91ae-364da2661108 | git.gnome.org | |
| Bug #1120126 “Screen locking broken because of AutostartConditio...” : Bugs : gnome-screensaver package : Ubuntu | af854a3a-2127-422b-91ae-364da2661108 | bugs.launchpad.net | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.