PublicDate: 2007-05-02 20:19:00 UTC Candidate: CVE-2007-1859 References: https://ubuntu.com/security/notices/USN-474-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1859 Description: XScreenSaver 4.10, when using a remote directory service for credentials, does not properly handle the results from the getpwuid function in drivers/lock.c when there is no network connectivity, which causes XScreenSaver to crash and unlock the screen and allows local users to bypass authentication. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_xscreensaver: released (4.23-4ubuntu8.1) edgy_xscreensaver: released (4.24-4ubuntu2.1) feisty_xscreensaver: released (4.24-5ubuntu2.1) devel_xscreensaver: released (4.24-5ubuntu3) upstream_xscreensaver: needs-triage