{"api_version":"1","generated_at":"2026-07-23T10:47:06+00:00","cve":"CVE-2013-1050","urls":{"html":"https://cve.report/CVE-2013-1050","api":"https://cve.report/api/cve/CVE-2013-1050.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2013-1050","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2013-1050"},"summary":{"title":"CVE-2013-1050","description":"The default configuration in gnome-screensaver 3.5.4 through 3.6.0 sets the AutostartCondition line to fallback mode in the .desktop file, which prevents the program from starting automatically after login and allows physically proximate attackers to bypass screen locking and access an unattended workstation.","state":"PUBLISHED","assigner":"canonical","published_at":"2013-03-08 22:55:01","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-264","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.2","severity":"","vector":"AV:L/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.ubuntu.com/usn/USN-1716-1","name":"http://www.ubuntu.com/usn/USN-1716-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"USN-1716-1: gnome-screensaver vulnerability | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.gnome.org/show_bug.cgi?id=683060","name":"https://bugzilla.gnome.org/show_bug.cgi?id=683060","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Bug 683060 – Impossible to unlock screen if not using GDM","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://git.gnome.org/browse/gnome-screensaver/commit/?id=1940dc6bc8ad5ee2c029714efb1276c05ca80bd4","name":"https://git.gnome.org/browse/gnome-screensaver/commit/?id=1940dc6bc8ad5ee2c029714efb1276c05ca80bd4","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"gnome-screensaver - GNOME Screensaver","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugs.launchpad.net/ubuntu/+source/gnome-screensaver/+bug/1120126","name":"https://bugs.launchpad.net/ubuntu/+source/gnome-screensaver/+bug/1120126","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Bug #1120126 “Screen locking broken because of AutostartConditio...” : Bugs : gnome-screensaver package : Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2013-1050","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2013-1050","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2013","cve_id":"1050","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"gnome","cpe5":"gnome_screensaver","cpe6":"3.5.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2013","cve_id":"1050","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"gnome","cpe5":"gnome_screensaver","cpe6":"3.5.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2013","cve_id":"1050","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"gnome","cpe5":"gnome_screensaver","cpe6":"3.6.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T14:49:20.501Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://bugs.launchpad.net/ubuntu/+source/gnome-screensaver/+bug/1120126"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://bugzilla.gnome.org/show_bug.cgi?id=683060"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://git.gnome.org/browse/gnome-screensaver/commit/?id=1940dc6bc8ad5ee2c029714efb1276c05ca80bd4"},{"name":"USN-1716-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/USN-1716-1"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"descriptions":[{"lang":"en","value":"The default configuration in gnome-screensaver 3.5.4 through 3.6.0 sets the AutostartCondition line to fallback mode in the .desktop file, which prevents the program from starting automatically after login and allows physically proximate attackers to bypass screen locking and access an unattended workstation."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2013-03-08T22:00:00.000Z","orgId":"cc1ad9ee-3454-478d-9317-d3e869d708bc","shortName":"canonical"},"references":[{"tags":["x_refsource_MISC"],"url":"https://bugs.launchpad.net/ubuntu/+source/gnome-screensaver/+bug/1120126"},{"tags":["x_refsource_MISC"],"url":"https://bugzilla.gnome.org/show_bug.cgi?id=683060"},{"tags":["x_refsource_MISC"],"url":"https://git.gnome.org/browse/gnome-screensaver/commit/?id=1940dc6bc8ad5ee2c029714efb1276c05ca80bd4"},{"name":"USN-1716-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/USN-1716-1"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"security@ubuntu.com","ID":"CVE-2013-1050","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The default configuration in gnome-screensaver 3.5.4 through 3.6.0 sets the AutostartCondition line to fallback mode in the .desktop file, which prevents the program from starting automatically after login and allows physically proximate attackers to bypass screen locking and access an unattended workstation."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"https://bugs.launchpad.net/ubuntu/+source/gnome-screensaver/+bug/1120126","refsource":"MISC","url":"https://bugs.launchpad.net/ubuntu/+source/gnome-screensaver/+bug/1120126"},{"name":"https://bugzilla.gnome.org/show_bug.cgi?id=683060","refsource":"MISC","url":"https://bugzilla.gnome.org/show_bug.cgi?id=683060"},{"name":"https://git.gnome.org/browse/gnome-screensaver/commit/?id=1940dc6bc8ad5ee2c029714efb1276c05ca80bd4","refsource":"MISC","url":"https://git.gnome.org/browse/gnome-screensaver/commit/?id=1940dc6bc8ad5ee2c029714efb1276c05ca80bd4"},{"name":"USN-1716-1","refsource":"UBUNTU","url":"http://www.ubuntu.com/usn/USN-1716-1"}]}}}},"cveMetadata":{"assignerOrgId":"cc1ad9ee-3454-478d-9317-d3e869d708bc","assignerShortName":"canonical","cveId":"CVE-2013-1050","datePublished":"2013-03-08T22:00:00.000Z","dateReserved":"2013-01-11T00:00:00.000Z","dateUpdated":"2024-09-16T19:25:32.045Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2013-03-08 22:55:01","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-264","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gnome_screensaver:3.5.4:*:*:*:*:*:*:*","matchCriteriaId":"48224CBC-49B5-49CE-8665-3FFC2359778C"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gnome_screensaver:3.5.5:*:*:*:*:*:*:*","matchCriteriaId":"688B61C0-4213-43DE-862C-55A057118173"},{"vulnerable":true,"criteria":"cpe:2.3:a:gnome:gnome_screensaver:3.6.0:*:*:*:*:*:*:*","matchCriteriaId":"E9EA343E-C571-4253-97FC-2E2B17537BD4"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2013","CveId":"1050","Ordinal":"1","Title":"CVE-2013-1050","CVE":"CVE-2013-1050","Year":"2013"},"notes":[{"CveYear":"2013","CveId":"1050","Ordinal":"1","NoteData":"The default configuration in gnome-screensaver 3.5.4 through 3.6.0 sets the AutostartCondition line to fallback mode in the .desktop file, which prevents the program from starting automatically after login and allows physically proximate attackers to bypass screen locking and access an unattended workstation.","Type":"Description","Title":"CVE-2013-1050"},{"CveYear":"2013","CveId":"1050","Ordinal":"2","NoteData":"2013-03-08","Type":"Other","Title":"Published"}]}}}