cbcvebase.
CVE-2014-1949
published 2015-01-16

CVE-2014-1949: GTK+ 3.10.9 and earlier, as used in cinnamon-screensaver, gnome-screensaver, and other applications, allows physically proximate attackers to bypass the lock…

PriorityP431high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.33%
25.2th percentile
GTK+ 3.10.9 and earlier, as used in cinnamon-screensaver, gnome-screensaver, and other applications, allows physically proximate attackers to bypass the lock screen by pressing the menu button.

Affected

6 ranges
VendorProductVersion rangeFixed in
canonicalubuntu
debiancinnamon< cinnamon 2.2.14-1 (bookworm)cinnamon 2.2.14-1 (bookworm)
debiangtk+2.0< cinnamon 2.2.14-1 (bookworm)cinnamon 2.2.14-1 (bookworm)
debiangtk+3.0< cinnamon 2.2.14-1 (bookworm)cinnamon 2.2.14-1 (bookworm)
gnomegtk<= 3.10.9
linuxmintlinux_mint

CVSS provenance

nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH
vendor_debian7.2HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.