Bug#1052067: gnome-shell: CVE-2023-43090: screenshot tool allows viewing open windows when session is locked
Simon McVittie
smcv at debian.org
Sun Sep 17 19:09:45 BST 2023
On Sun, 17 Sep 2023 at 19:39:24 +0200, Moritz Mühlenhoff wrote:
> Does this also affect oldstable?
As far as I can tell, oldstable is not affected by this, because it
doesn't appear to have the new screenshot UI in js/ui/screenshot.js that
has the vulnerability. Pressing Print Screen in the lock screen in an
oldstable GNOME VM just opens the password prompt, the same as if I had
pressed Escape or Backspace.
(But don't necessarily trust me 100% on this - I'm sorry, I'm making more
mistakes than I should today.)
smcv
More information about the pkg-gnome-maintainers
mailing list