Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not properly take focus of the keyboard when switching to the lock screen, which allows physically proximate attackers to bypass the lock screen by (1) leveraging a machine that had text selected when locking or (2) resuming from a suspension.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2014-08-07T10:00:00

Updated: 2017-09-07T15:57:01

Reserved: 2014-08-07T00:00:00


Link: CVE-2014-5195

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-08-07T11:13:37.360

Modified: 2017-09-08T01:29:04.510


Link: CVE-2014-5195

JSON object: View

cve-icon Redhat Information

No data.

CWE