USN-7052-1

    Dashboard / Vulnerabilities / USN-7052-1

    USN-7052-1

    Published: 3 Oct 2024Last Modified: 25 Jun 2026

    Summary: gnome-shell vulnerabilities

    Details: It was discovered that GNOME Shell mishandled extensions that fail to reload, possibly leading to extensions staying enabled on the lock screen. An attacker could possibly use this issue to launch applications, view sensitive information, or execute arbitrary commands. (CVE-2017-8288) It was discovered that the GNOME Shell incorrectly handled certain keyboard inputs. An attacker could possibly use this issue to invoke keyboard shortcuts, and potentially other actions while the workstation was locked. (CVE-2019-3820)

    Affected packages

    Package

    Name: gnome-shell

    Purl: pkg:deb/ubuntu/gnome-shell?arch=source&distro=esm-apps%2Fxenial

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -3.18.5-0ubuntu0.3+esm1

    Affected versions

    3.16.4-0ubuntu1

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    USN-7052-1 | CVE-DB