Xscreensaver Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    1
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2021-34557

    XScreenSaver 5.45 can be bypassed if the machine has more than ten disconnectable video outputs. A buffer overflow in update_screen_layout() allows an attacker to bypass the standard screen lock authentication mechanism by crashing XScreenSaver. The attacker must physically disconnect many video outputs.

    Last Modified: Nov 21, 2024
    Published: Jun 10, 2021

    CVE-2021-31523

    The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_net_raw enabled for the /usr/libexec/xscreensaver/sonar file, which allows local users to gain privileges because this is arguably incompatible with the design of the Mesa 3D Graphics library dependency.

    Last Modified: Nov 21, 2024
    Published: Apr 21, 2021

    CVE-2015-8025

    driver/subprocs.c in XScreenSaver before 5.34 does not properly perform an internal consistency check, which allows physically proximate attackers to bypass the lock screen by hot swapping monitors.

    Last Modified: Apr 12, 2025
    Published: Nov 10, 2015

    CVE-2011-2187

    xscreensaver: exits when activated (DPMSForceLevel)

    Last Modified: Nov 21, 2024
    Published: May 10, 2011
    Items Per Page
    Xscreensaver_Project Vulnerabilities & Security CVEs | CVE-DB