cbcvebase.

Ayatana Project Unity vulnerabilities

4 known vulnerabilities affecting ayatana_project/unity.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2014-5195P4HIGHCVSS 7.2≤ 7.2.2v7.2.0+2 more2014-08-07
CVE-2014-5195 [HIGH] CWE-362 CVE-2014-5195: Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not properly take focus of the ke Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not properly take focus of the keyboard when switching to the lock screen, which allows physically proximate attackers to bypass the lock screen by (1) leveraging a machine that had text selected when locking or (2) resuming from a suspension.
nvd
CVE-2014-3204P4MEDIUMCVSS 4.4≤ 7.2.0v7.0.0+5 more2014-05-06
CVE-2014-3204 [MEDIUM] CWE-264 CVE-2014-3204: Unity before 7.2.1, as used in Ubuntu 14.04, does not properly handle keyboard shortcuts, which allo Unity before 7.2.1, as used in Ubuntu 14.04, does not properly handle keyboard shortcuts, which allows physically proximate attackers to bypass the lock screen and execute arbitrary commands, as demonstrated by right-clicking on the indicator bar and then pressing the ALT and F2 keys.
nvd
CVE-2014-3203P4MEDIUMCVSS 4.4≤ 7.2.0v7.0.0+5 more2014-05-06
CVE-2014-3203 [MEDIUM] CWE-264 CVE-2014-3203: Unity before 7.2.1, as used in Ubuntu 14.04, does not properly restrict access to the Dash when the Unity before 7.2.1, as used in Ubuntu 14.04, does not properly restrict access to the Dash when the lock screen is active, which allows physically proximate attackers to bypass the lock screen and execute arbitrary commands, as demonstrated by pressing the SUPER key before the screen auto-locks.
nvd
CVE-2014-3202P4MEDIUMCVSS 4.4≤ 7.2.0v7.0.0+5 more2014-05-06
CVE-2014-3202 [MEDIUM] CWE-264 CVE-2014-3202: Unity before 7.2.1 does not properly handle entry activation, which allows physically proximate atta Unity before 7.2.1 does not properly handle entry activation, which allows physically proximate attackers to bypass the lock screen by holding the ENTER key, which triggers the process to crash.
nvd
Ayatana Project Unity vulnerabilities | cvebase