2019-06-09
                                                
                                                ALT-BU-2019-3717-1
Branch p9 update bulletin.
Package gnome-shell updated to version 3.32.2-alt1 for branch p9 in task 231354.
Closed vulnerabilities
                                                                                                                Published: 2022-02-18
Modified: 2024-11-21
                                                                                                        Modified: 2024-11-21
CVE-2021-20315
A locking protection bypass flaw was found in some versions of gnome-shell as shipped within CentOS Stream 8, when the "Application menu" or "Window list" GNOME extensions are enabled. This flaw allows a physical attacker who has access to a locked system to kill existing applications and start new ones as the locked user, even if the session is still locked.
                                                                                                                    
                                                                                                                    
                                                                                                                        Severity: LOW (3.6)
                                                                                                                    
                                                                                                                    
                                                                                                                    
                                                                                                                    
                                                                                                                        Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P
                                                                                                                    
                                                                                                                    
                                                                                                                
                                                                                                            
                                                                                                                    
                                                                                                                    
                                                                                                                        Severity: MEDIUM (6.1)
                                                                                                                    
                                                                                                                    
                                                                                                                    
                                                                                                                    
                                                                                                                        Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
                                                                                                                    
                                                                                                                    
                                                                                                                
                                                                                                            References:
                                                                                                    
                                                                                                    
                                                                                                