Bug 7248 - [Anolis OS 23] Bugfix for CVE-2023-43090
Summary: [Anolis OS 23] Bugfix for CVE-2023-43090
Status: NEW
Alias: None
Product: Anolis OS 23
Classification: Anolis OS
Component: BaseOS Packages (show other bugs) BaseOS Packages
Version: unspecified
Hardware: All Linux
: P3-Medium S3-normal
Target Milestone: ---
Assignee: happy_orange
QA Contact: bolong_tbl
URL:
Whiteboard:
Keywords: CVE
Depends on:
Blocks:
 
Reported: 2023-11-14 15:24 UTC by 小龙
Modified: 2023-11-14 15:24 UTC (History)
0 users

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description 小龙 admin 2023-11-14 15:24:11 UTC
Description:
A vulnerability was found in GNOME Shell. GNOME Shell's lock screen allows an unauthenticated local user to view windows of the locked desktop session by using keyboard shortcuts to unlock the restricted functionality of the screenshot tool.

Broken commit info:

Bugfix commit info:
https://gitlab.gnome.org/GNOME/gnome-shell/-/commit/671df28a509ae208e158976f0855d91fdbea16a1
https://gitlab.gnome.org/GNOME/gnome-shell/-/merge_requests/2944
https://github.com/GNOME/gnome-shell/commit/521525948eed85cc27c0796a0b9569d161df81ba
https://gitlab.gnome.org/GNOME/gnome-shell/-/commit/521525948eed85cc27c0796a0b9569d161df81ba