Bug#1052067: gnome-shell: CVE-2023-43090: screenshot tool allows viewing open windows when session is locked

Simon McVittie smcv at debian.org
Sun Sep 17 19:09:45 BST 2023


On Sun, 17 Sep 2023 at 19:39:24 +0200, Moritz Mühlenhoff wrote:
> Does this also affect oldstable?

As far as I can tell, oldstable is not affected by this, because it
doesn't appear to have the new screenshot UI in js/ui/screenshot.js that
has the vulnerability. Pressing Print Screen in the lock screen in an
oldstable GNOME VM just opens the password prompt, the same as if I had
pressed Escape or Backspace.

(But don't necessarily trust me 100% on this - I'm sorry, I'm making more
mistakes than I should today.)

    smcv



More information about the pkg-gnome-maintainers mailing list