CVE-2016-2312

NameCVE-2016-2312
DescriptionTurning all screens off in Plasma-workspace and kscreenlocker while the lock screen is shown can result in the screen being unlocked when turning a screen on again.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more)
NVD severitymedium
Debian Bugs814355

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
plasma-workspace (PTS)stretch (security), stretch4:5.8.6-2.1+deb9u1fixed
buster4:5.14.5.1-1fixed
bullseye, sid4:5.14.5.1-4fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
plasma-workspacesource(unstable)4:5.4.3-2814355

Notes

Affects plasma-workspace < 5.5.0, kscreenlocker < 5.5.5
kscreenlocker is only in experimental
https://www.kde.org/info/security/advisory-20160209-1.txt
https://bugs.kde.org/show_bug.cgi?id=358125
https://bugzilla.opensuse.org/show_bug.cgi?id=964548

Search for package or bug name: Reporting problems