Locking Protection Bypass Vulnerability in GNOME Shell by CentOS
CVE-2021-20315
6.1MEDIUM
What is CVE-2021-20315?
A vulnerability exists in GNOME Shell as included in CentOS Stream 8 that allows a physical attacker with access to a locked system to bypass locking protections. By exploiting this flaw, an attacker can forcibly terminate existing applications and initiate new ones under the context of the locked user, despite the session remaining locked. This highlights the importance of securing physical access to systems to prevent unauthorized manipulation of sessions.
Affected Version(s)
gnome-shell gnome-shell 3.32.2-40.el8