Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not properly take focus of the keyboard when switching to the lock screen, which allows physically proximate attackers to bypass the lock screen by (1) leveraging a machine that had text selected when locking or (2) resuming from a suspension.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2014-08-07T10:00:00
Updated: 2017-09-07T15:57:01
Reserved: 2014-08-07T00:00:00
Link: CVE-2014-5195
JSON object: View
NVD Information
Status : Modified
Published: 2014-08-07T11:13:37.360
Modified: 2017-09-08T01:29:04.510
Link: CVE-2014-5195
JSON object: View
Redhat Information
No data.
CWE